CVE-2020-13159
Artica Proxy before 4.30.000000 Community Edition allows OS command injection via the Netbios name, Server domain name, dhclient_mac, Hostname, or Alias field. NOTE: this may overlap CVE-2020-10818.
- Affected products
- Artica Proxy
- Articatech Artica Proxy
- < 4.30.000000
- Fix
- Available
- CVSS 2.0
- 10.0 HIGH
- CVSS 3.1
- 9.8 CRITICAL
- EPSS
- 9.3% (95th percentile)
- Weakness
- CWE-78
- NVD status
- Modified
- Published
- 2020-06-22
CVE-2020-13159 at NVD
1 known exploit for CVE-2020-13159
Proof-of-concept code and exploit modules indexed by Sploitus