Multiple Authenticated RCE on... CVE-2020-7244 CVE-2020-7243

9.0 AV AC AU C I A
发布: 2020-01-20
修订: 2020-01-24

### Multiple Authenticated RCE on FX-1010 Fetch URL and Poll Routes CVE-2020-7243 CVE-2020-7244) **[Comtech] Multiple Authenticated RCE on FX-1010 Fetch URL and Poll Routes** The web application used for the management and administration of Compression Bandwidth Optimization Platform has a critical vulnerability that allow to an attacker to do a Remote Code Execution with root access. That is, the application allows to gain full control over the server. ## Comtech FX-1010 [![](https://images.seebug.org/1583428695251-w331s) ](https://images.seebug.org/1583428695251-w331s) Vendor WebSite: <http://www.comtechtel.com/> You can search for vulnerable sites on google with the following dork **" Comtech FX Series"** or maybe in shodan if you want. We need to use the default comtech credentials to access on the administration panel (comtech:comtech) [![](https://images.seebug.org/1583428699131-w331s) ](https://images.seebug.org/1583428699131-w331s) **RCE PoC #1** Go to the Menu and click on...

0%
暂无可用Exp或PoC
当前有2条受影响产品信息