Sage Group Sage X3是Sage Group公司的一个应用软件。针对成熟企业开发的企业资源规划产品。 Sage X3存在信息泄露漏洞,该 Metasploit 模块利用 Sage X3 AdxSrv 管理协议中的身份验证绕过漏洞,以系统身份对运行可用 AdxAdmin 服务的 Sage X3 服务器执行任意命令。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2020-7388 | 10.0 CRITICAL | Sage X3 AdxAdmin Unauthenticated Command Execution Bypass by Spoofing |
| CVE-2020-7389 | 5.5 MEDIUM | Sage X3 Syracuse Missing Authentication for Critical Function in Developer Environment |
| CVE-2020-7390 | 4.6 MEDIUM | Sage X3 Syracuse Persistent XSS in Edit User page |
No comments yet