VYPR

Web Panel

by Mrf

CVEs (1)

  • CVE-2016-10043CriJan 31, 2017
    risk 0.71cvss 10.0epss 0.10

    An issue was discovered in Radisys MRF Web Panel (SWMS) 9.0.1. The MSM_MACRO_NAME POST parameter in /swms/ms.cgi was discovered to be vulnerable to OS command injection attacks. It is possible to use the pipe character (|) to inject arbitrary OS commands and retrieve the output…