Skip to main content

CVE-2020-21224

Description

A Remote Code Execution vulnerability has been found in Inspur ClusterEngine V4.0. A remote attacker can send a malicious login packet to the control server

NVD
Severity: CRITICAL
CVE ID: CVE-2020-21224
CVSS Score: 9.8
CVSS Metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Refrence: NVDMITRE

Proof Of Concept

Nuclei Templates for CVE-2020-21224
5l1v3r1

浪潮ClusterEngineV4.0 远程命令执行漏洞扫描脚本。

Refrence: GitHub