OS Command Injection Vulnerability in Artica Proxy by Artica Networks
CVE-2020-13159
Key Information:
- Vendor
Articatech
- Status
- Vendor
- CVE Published:
- 22 June 2020
Badges
What is CVE-2020-13159?
Artica Proxy, specifically the Community Edition prior to version 4.30.000000, is susceptible to OS command injection attacks. This vulnerability allows attackers to manipulate Netbios names, Server domain names, dhclient_mac, Hostname, or Alias fields, potentially enabling unauthorized command execution on the underlying system. Such exploitation can lead to severe security breaches and compromise the integrity of the affected system.
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
References
EPSS Score
9% chance of being exploited in the next 30 days.
CVSS V3.1
Timeline
Vulnerability published
- ๐ก
Public PoC available
- ๐พ
Exploit known to exist
Vulnerability Reserved
