RULE(RULE ID:330517)

Rule General Information
Release Date: 2020-07-06
Rule Name: Cayin CMS NTP Server Remote Code Execution Vulnerability (CVE-2020-7357)
Severity:
CVE ID:
Rule Protection Details
Description: An authenticated RCE in Cayin CMS below the 11.0 version.The RCE is executed in the system_service.cgi file's ntpIp Parameter.
Impact: An attacker could exploit this vulnerability to have unspecified effect.
Affected OS: Linux, Other Unix
Reference: https://exchange.xforce.ibmcloud.com/vulnerabilities/182925
https://www.zeroscience.mk/en/vulnerabilities/ZSL-2020-5570.php
https://github.com/rapid7/metasploit-framework/pull/13607
https://packetstormsecurity.com/files/158139/Cayin-CMS-NTP-Server-11.0-Remote-Code-Execution.html
Solutions
The vendors have released upgrade patches to fix vulnerabilities, please visit:
https://www.cayintech.com/