Aptus Web
CVEs (2)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2020-7980 | Cri | 0.73 | 9.8 | 0.83 | Jan 25, 2020 | Intellian Aptus Web 1.24 allows remote attackers to execute arbitrary OS commands via the Q field within JSON data to the cgi-bin/libagent.cgi URI. NOTE: a valid sid cookie for a login to the intellian default account might be needed. | ||
| CVE-2020-8000 | Cri | 0.64 | 9.8 | 0.02 | Jan 27, 2020 | Intellian Aptus Web 1.24 has a hardcoded password of 12345678 for the intellian account. |
- risk 0.73cvss 9.8epss 0.83
Intellian Aptus Web 1.24 allows remote attackers to execute arbitrary OS commands via the Q field within JSON data to the cgi-bin/libagent.cgi URI. NOTE: a valid sid cookie for a login to the intellian default account might be needed.
- risk 0.64cvss 9.8epss 0.02
Intellian Aptus Web 1.24 has a hardcoded password of 12345678 for the intellian account.