CVE-2020-8654
07.02.2020, 00:15
An issue was discovered in EyesOfNetwork 5.3. An authenticated web user with sufficient privileges could abuse the AutoDiscovery module to run arbitrary OS commands via the /module/module_frame/index.php autodiscovery.php target field.
| Vendor | Product | Version |
|---|---|---|
| eyesofnetwork | eyesofnetwork | 5.3-0 |
𝑥
= Vulnerable software versions
References