CVE-2020-10173
67Vexday Risk Score
Prioritize patching. It exploitation observed by VulnCheck and has a public proof of concept.
ssvc Actepss 77%
from disclosure to weapon
Published on NVDMar 5
VulnCheck+63d
exploitation probability
77%top 1% of all CVEs
observed exploitation
yesVulnCheck
1 public exploit(s)
Comtrend VR-3033 DE11-416SSG-C01_R02.A2pvI042j1.d26m devices have Multiple Authenticated Command Injection vulnerabilities via the ping and traceroute diagnostic pages, as demonstrated by shell metacharacters in the pingIpAddress parameter to ping.cgi.
Affected products
n/a · n/apublic PoCs found — 1
cve_referencewww.exploit-db.com/exploits/48142unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.