Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Vitec Flamingo 4.12.2 Unauthenticated OS Command Injection via ping.php
Vulnerability Description
Vitec Flamingo 4.12.2 contains an unauthenticated OS command injection vulnerability in the admin/ajax/ping.php endpoint that allows remote attackers to execute arbitrary commands by exploiting a double-evaluation flaw in shell argument handling. The endpoint applies escapeshellarg() to the user-supplied host POST parameter before passing it to a system wrapper, but the wrapper retrieves the decoded value from argv and incorporates it into a second shell_exec() call without escaping, allowing injected commands to execute with root privileges via passwordless sudo.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
OS命令中使用的特殊元素转义处理不恰当(OS命令注入)
Vulnerability Title
VITEC Flamingo 命令注入漏洞
Vulnerability Description
VITEC Flamingo是法国VITEC公司的一家全球领先的 IP 视频流解决方案提供商,专注于企业 IPTV、数字标牌和视频流媒体技术,帮助企业通过视频进行通信、教育和娱乐。 VITEC Flamingo 4.12.2版本存在命令注入漏洞,该漏洞源于admin/ajax/ping.php端点存在Shell参数处理的双重评估缺陷,导致未经身份验证的远程攻击者能够执行OS命令注入攻击,通过passwordless sudo以root权限执行任意命令。
CVSS Information
N/A
Vulnerability Type
N/A