Geutebruck.testaction.cgi.AUTH.Remote.Command.Execution

description-logoDescription

This indicates an attack attempt to exploit an Remote Code Execution vulnerability in Geutebruck.
The vulnerability is due to improper privilege management in the application. An authenticated remote attacker may be able to exploit this to execute arbitrary commands within the context of the application.

affected-products-logoAffected Products

Geutebruck with firmware version 1.12.0.25 and prior
Geutebruck G-Code EEC-2xxx with firmware version 1.12.13.2 and version 1.12.14.5
Geutebruck G-Cam EBC-21xx with firmware version 1.12.13.2 and version 1.12.14.5
Geutebruck G-Cam EFD-21xx with firmware version 1.12.13.2 and version 1.12.14.5
Geutebruck G-Cam ETHC-21xx with firmware version 1.12.13.2 and version 1.12.14.5
Geutebruck G-Cam EWPC-21xx with firmware version 1.12.13.2 and version 1.12.14.5

Impact logoImpact

System Compromise: Remote attackers can gain control of vulnerable systems.

recomended-action-logoRecommended Actions

Applied latest path or upgrade from the vendor.
https://us-cert.cisa.gov/ics/advisories/icsa-20-219-03

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Status Detail
2020-12-08 16.975
Modified
Sig Added
2020-09-14 16.922
Modified
Default_action:pass:drop
2020-09-02 16.916
New