• Linear eMerge E3-Series Access Controller Command Injection

    From Security Bot@2:250/1 to All on Thu Apr 13 04:22:00 2023


    Linear eMerge E3-Series Access Controller Command Injection

    This Metasploit module exploits a command injection vulnerability in the
    Linear eMerge E3-Series Access Controller. The Linear eMerge E3 versions 1.00-06 and below are vulnerable to unauthenticated command injection in card_scan_decoder.php via the No and door HTTP GET parameter. Successful exploitation results in command execution as the root user.

    https://packetstormsecurity.com/files/170372/linear_emerge_unauth_rce_cve_2019_ 7256.rb.txt

    Thu, 05 Jan 2023 15:21:03 GMT
    ________________________________
    --- The information is for inforamtional purposes only.
    * Origin: Read us with http://winpoint.org JID: rs@captflint.com