Geutebruck.testaction.cgi.AUTH.Remote.Command.Execution

description-logoDescription

This indicates an attack attempt to exploit an Remote Code Execution vulnerability in Geutebruck.
The vulnerability is due to improper privilege management in the application. An authenticated remote attacker may be able to exploit this to execute arbitrary commands within the context of the application.

affected-products-logoAffected Products

Geutebruck with firmware version 1.12.0.25 and prior
Geutebruck G-Code EEC-2xxx with firmware version 1.12.13.2 and version 1.12.14.5
Geutebruck G-Cam EBC-21xx with firmware version 1.12.13.2 and version 1.12.14.5
Geutebruck G-Cam EFD-21xx with firmware version 1.12.13.2 and version 1.12.14.5
Geutebruck G-Cam ETHC-21xx with firmware version 1.12.13.2 and version 1.12.14.5
Geutebruck G-Cam EWPC-21xx with firmware version 1.12.13.2 and version 1.12.14.5

Impact logoImpact

System Compromise: Remote attackers can gain control of vulnerable systems.

recomended-action-logoRecommended Actions

Applied latest path or upgrade from the vendor.
https://us-cert.cisa.gov/ics/advisories/icsa-20-219-03

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2020-12-08 16.975 Sig Added
2020-09-14 16.922 Default_action:pass:drop
2020-09-02 16.916