CyberSec.Space Logo
CVEブラウザに戻る

CVE-2020-25010

CRITICAL
9.8
CVSS Severity Score
EPSS Score0.1790%
EPSS Percentile5.10th
Published2020年12月17日
Last Modified2024年11月21日

Vulnerability Description

An arbitrary code execution vulnerability in Kyland KPS2204 6 Port Managed Din-Rail Programmable Serial Device Servers Software Version:R0002.P05 allows remote attackers to upload a malicious script file by constructing a POST type request and writing a payload in the request parameters as an instruction to write a file.

Affected Platforms (CPE)

💻
Kyland

Kps2204 6 Port Managed Din Rail Programmable Serial Device Firmware

= r0002.p05

References & Advisories

関連する脆弱性情報