CVE-2023-30806: Sangfor Next-Gen Application Firewall PHPSESSID Command Injection
The Sangfor Next-Gen Application Firewall version NGAF8.0.17 is vulnerable to an operating system command injection vulnerability. A remote and unauthenticated attacker can execute arbitrary commands by sending a crafted HTTP POST request to the /cgi-bin/login.cgi endpoint. This is due to mishandling of shell meta-characters in the PHPSESSID cookie.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this Sangfor Next-Gen Application Firewall vulnerability?
The vulnerability ID for this Sangfor Next-Gen Application Firewall vulnerability is CVE-2023-30806.
What is the severity of CVE-2023-30806?
The severity of CVE-2023-30806 is critical with a CVSS score of 9.8.
How does the vulnerability impact the Sangfor Next-Gen Application Firewall?
The vulnerability allows a remote and unauthenticated attacker to execute arbitrary commands by sending a crafted HTTP POST request to the /cgi-bin/login.cgi endpoint.
What is the affected software version of the Sangfor Next-Gen Application Firewall?
The affected software version of the Sangfor Next-Gen Application Firewall is NGAF8.0.17.
Is there a fix available for CVE-2023-30806?
At the moment, there is no known fix available for CVE-2023-30806. It is recommended to follow the vendor's official advisories and apply any patches or updates as soon as they are released.