Command injection in Open Source Security Information Manager and Unified Security Management - CVE-2017-6971
Published: July 31, 2017
Vulnerability identifier: #VU7608
CSH Severity: Medium
CVSS v4: 8.7 [CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2017-6971
CWE-ID: CWE-77
Exploitation vector: Remote access
Exploit availability:
Public exploit is available
Vulnerability details
The vulnerability allows a remote authenticated attacker to execute arbitrary commands on a targeted system.
The weakness exists due to insufficient validation of user-supplied input. A remote attacker can send a specially crafted request containing special control characters or use vectors involving the PHP session ID and the NfSen PHP code to execute arbitrary commands or launch a reverse shell on the targeted system.
Successful exploitation of the vulnerability may result in system compromise.
The weakness exists due to insufficient validation of user-supplied input. A remote attacker can send a specially crafted request containing special control characters or use vectors involving the PHP session ID and the NfSen PHP code to execute arbitrary commands or launch a reverse shell on the targeted system.
Successful exploitation of the vulnerability may result in system compromise.
Affected software
Open Source Security Information Manager
Unified Security Management
Unified Security Management
How to mitigate CVE-2017-6971
Update to version 5.3.5.