Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2020-37153

ASTPP 4.0.1 contains multiple vulnerabilities including cross-site scripting and command injection in SIP device configuration and plugin management interfaces. Attackers can exploit these flaws to inject system commands, hijack administrator sessions, and potentially execute arbitrary code with root permissions through cron task manipulation.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 24.9%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2020-37153
  • Inextrix » Astpp » Version: 4.0.1
    cpe:2.3:a:inextrix:astpp:4.0.1


Contact Us

Shodan ® - All rights reserved