CVE Feed

    Dashboard / CVE / CVE-2020-24057

    CVE-2020-24057

    The management website of the Verint S5120FD Verint_FW_0_42 unit features a CGI endpoint ('ipfilter.cgi') that allows the user to manage network filtering on the unit. This endpoint is vulnerable to a command injection. An authenticated attacker can leverage this issue to execute arbitrary commands as 'root'.

    Published:Aug 21, 2020
    Last Modified:Nov 21, 2024
    EPS:Aug 21, 2020
    EPSS Score:0.21189
    CVSS Score:8.8

    Affected Products

    Vendor
    Verint
    Product
    S5120fd
    Vendor
    Verint
    Product
    S5120fd Firmware

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High