Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2017-14853

The Orpak SiteOmat OrCU component is vulnerable to code injection, for all versions prior to 2017-09-25, due to a search query that uses a direct shell command. By tampering with the request, an attacker is able to run shell commands and receive valid output from the device.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.022
EPSS Ranking 83.7%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 10.0
Products affected by CVE-2017-14853
  • Orpak » Siteomat » Version: 6.4.414.084
    cpe:2.3:a:orpak:siteomat:6.4.414.084


Contact Us

Shodan ® - All rights reserved