PT-2021-10783 · Mercury · Mercury Router Mer1200

·

CVE-2020-22724

·

Published

2021-10-14

·

Updated

2022-10-26

CVSS v2.0

10

Critical

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Mercury Router MER1200 version 1.0.1 Mercury Router MER1200G version 1.0.1
Description A remote command execution issue exists in the add server service of PPTP SERVER in the affected routers.
Recommendations For Mercury Router MER1200 version 1.0.1, consider disabling the add server service function until a patch is available. For Mercury Router MER1200G version 1.0.1, consider disabling the add server service function until a patch is available.

Exploit

Fix

OS Command Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-22724

Affected Products

Mercury Router Mer1200