CVE-2020-6760
CRITICALCVSS 9.8/10EPSS 1.71%
Last modified
CVE-2020-6760 is a critical-severity vulnerability rated 9.8/10 on the CVSS scale. Schmid ZI 620 V400 VPN 090 routers allow an attacker to execute OS commands as root via shell metacharacters to an entry on the SSH subcommand menu, as demonstrated by ping.. EPSS estimates a 1.71% chance of exploitation in the next 30 days.
Description
Schmid ZI 620 V400 VPN 090 routers allow an attacker to execute OS commands as root via shell metacharacters to an entry on the SSH subcommand menu, as demonstrated by ping.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Schmid-Telecom | Zi 620 V400 Firmware | 090 |
References
- https://github.com/0xedh/someshit/blob/master/CVE-2020-6760.mdExploit, Third Party Advisory
- https://github.com/0xedh/someshit/blob/master/CVE-2020-6760.mdExploit, Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2020-6760?
Schmid ZI 620 V400 VPN 090 routers allow an attacker to execute OS commands as root via shell metacharacters to an entry on the SSH subcommand menu, as demonstrated by ping.
How severe is CVE-2020-6760?
CVE-2020-6760 has a CVSS score of 9.8/10 (CRITICAL severity). The EPSS model estimates a 1.71% probability of exploitation in the next 30 days.
How do I fix CVE-2020-6760?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2020
- CVE-2020-6752In OMERO before 5.6.1, group owners can access members' data…3.8
- CVE-2020-6753The Login by Auth0 plugin before 4.0.0 for WordPress allows …6.1
- CVE-2020-6754dotCMS before 5.2.4 is vulnerable to directory traversal, le…9.8
- CVE-2020-6756languageOptions.php in Rasilient PixelStor 5000 K:4.0.1580-2…9.8
- CVE-2020-6757contentHostProperties.php in Rasilient PixelStor 5000 K:4.0.…8.8
- CVE-2020-6758A cross-site scripting (XSS) vulnerability in Option/options…6.1
- CVE-2020-6764Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID…
- CVE-2020-6765D-Link DSL-GS225 J1 AU_1.0.4 devices allow an admin to execu…7.2
- CVE-2020-6767A path traversal vulnerability in the Bosch Video Management…6.5
- CVE-2020-6768A path traversal vulnerability in the Bosch Video Management…7.5
- CVE-2020-6769Missing Authentication for Critical Function in the Bosch Vi…9.1
- CVE-2020-6770Deserialization of Untrusted Data in the BVMS Mobile Video S…9.8
Are you affected by CVE-2020-6760?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
