CVE-2020-8655
An issue was discovered in EyesOfNetwork 5.3. The sudoers configuration is prone to a privilege escalation vulnerability, allowing the apache user to run arbitrary commands as root via a crafted NSE script for nmap 7.
- Affected products
- Eyesofnetwork, Nmap
- Eyesofnetwork
- = 5.3-0
- Fix
- Available
- CVSS 2.0
- 9.3 HIGH
- CVSS 3.1
- 7.8 HIGH
- EPSS
- 60.1% (99th percentile)
- Weakness
- CWE-269
- NVD status
- Analyzed
- Published
- 2020-02-06
CVE-2020-8655 at NVD
8 known exploits for CVE-2020-8655
Proof-of-concept code and exploit modules indexed by Sploitus
Exploit for OS Command Injection in Eyesofnetwork
EyesOfNetwork - AutoDiscovery Target Command Execution (Metasploit)
EyesOfNetwork AutoDiscovery Target Command Execution Exploit
EyesOfNetwork AutoDiscovery Target Command Execution
EyesOfNetwork 5.3 Remote Code Execution
EyesOfNetwork 5.3 Remote Code Execution Exploit
EyesOfNetwork 5.3 - Remote Code Execution
EyesOfNetwork 5.3 - Remote Code Execution