CVE-2023-30806 | Sangfor Next-Gen Application Firewall 8.0.17 HTTP POST Request /cgi-bin/login.cgi os command injection (EUVD-2023-35166)
A vulnerability labeled as critical has been found in Sangfor Next-Gen Application Firewall 8.0.17. The affected element is an unknown function of the file /cgi-bin/login.cgi of the component HTTP POST Request Handler. Executing manipulation can lead to os command injection.
This vulnerability is registered as CVE-2023-30806. It is possible to launch the attack remotely. No exploit is available.