Mida eFramework through 2.9.0 allows an attacker to achieve remote code execution with administrative (root) privileges. No authentication is required.
id: CVE-2020-15920
info:
name: Mida eFramework <=2.9.0 - Remote Command Execution
author: dwisi
...