Severity: Critical
ID: 137966
File Name: EulerOS_SA-2020-1747.nasl
Version: 1.8
Type: local
Family: Huawei Local Security Checks
Published: 7/1/2020
Updated: 4/25/2023
Supported Sensors: Nessus
Risk Factor: High
Score: 8.4
Risk Factor: Critical
Base Score: 10
Temporal Score: 8.3
Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C
CVSS Score Source: CVE-2016-2554
Risk Factor: Critical
Base Score: 9.8
Temporal Score: 9.1
Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Temporal Vector: CVSS:3.0/E:F/RL:O/RC:C
CVSS Score Source: CVE-2019-9641
CPE: p-cpe:/a:huawei:euleros:php, cpe:/o:huawei:euleros:uvp:3.0.6.0, p-cpe:/a:huawei:euleros:php-cli, p-cpe:/a:huawei:euleros:php-common
Required KB Items: Host/local_checks_enabled, Host/cpu, Host/EulerOS/release, Host/EulerOS/rpm-list, Host/EulerOS/uvp_version
Exploit Available: true
Exploit Ease: Exploits are available
Patch Publication Date: 6/30/2020
CISA Known Exploited Vulnerability Due Dates: 4/15/2022
Metasploit (PHP-FPM Underflow RCE)
CVE: CVE-2011-4718, CVE-2014-9767, CVE-2014-9912, CVE-2015-4116, CVE-2015-6831, CVE-2015-6832, CVE-2015-6833, CVE-2015-7803, CVE-2015-7804, CVE-2015-8866, CVE-2015-8867, CVE-2015-8874, CVE-2015-8879, CVE-2015-8935, CVE-2016-10158, CVE-2016-10159, CVE-2016-10161, CVE-2016-10397, CVE-2016-2554, CVE-2016-3141, CVE-2016-3142, CVE-2016-3185, CVE-2016-4070, CVE-2016-4073, CVE-2016-4539, CVE-2016-4540, CVE-2016-4542, CVE-2016-5093, CVE-2016-5094, CVE-2016-5772, CVE-2016-6288, CVE-2016-6291, CVE-2016-6292, CVE-2016-6294, CVE-2016-7124, CVE-2016-7125, CVE-2016-7128, CVE-2016-7412, CVE-2016-7414, CVE-2016-7418, CVE-2016-9934, CVE-2016-9935, CVE-2017-11143, CVE-2017-11144, CVE-2017-11145, CVE-2017-11147, CVE-2017-11628, CVE-2017-12933, CVE-2017-16642, CVE-2017-7272, CVE-2017-9226, CVE-2018-10545, CVE-2018-10547, CVE-2018-14851, CVE-2018-17082, CVE-2018-5711, CVE-2018-5712, CVE-2019-11041, CVE-2019-11042, CVE-2019-11043, CVE-2019-11047, CVE-2019-11050, CVE-2019-19204, CVE-2019-19246, CVE-2019-9641
BID: 61929