CNNVD-202508-2521 Information
CNNVD ID
CNNVD-202508-2521
Related CVE
- CNNVD Published: 2025-08-20
Description (Chinese)
Ixsystems iXsystems FreeNAS是美国Ixsystems公司的一套开源的存储操作系统。 iXsystems FreeNAS 0.7.2版本存在安全漏洞,该漏洞源于web界面包含未经验证的命令执行后门,可能导致执行任意命令。
Description (English)
Ixsystems iXsystems FreeNAS is an open-source storage operating system for Ixsystems in the United States. The security gap in version 0.7.2 of iXsystems FreeNAS stems from the fact that the web interface contains unverified orders to execute the back door, which may lead to the execution of arbitrary orders.
Hazard Level
High
Vulnerability Type
其他
Affected Vendor
Ixsystems
Published
2025-08-20
Last Modified
2026-02-24
References
https://www.vulncheck.com/advisories/freenas-arbitrary-command-execution https://www.truenas.com/freenas/ https://www.tenable.com/plugins/nnm/5714 https://www.exploit-db.com/exploits/16313 http://sourceforge.net/projects/freenas/files//stable/0.7.2/NOTES%200.7.2.5543.txt/view https://web.archive.org/web/20101218143110/ https://sourceforge.net/projects/freenas/ https://raw.githubusercontent.com/rapid7/metasploit-framework/master/modules/exploits/multi/ https://github.com/freenas https://nvd.nist.gov/vuln/detail/CVE-2010-20059
Share on: