S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
critical·Product Based Web Vulnerabilities·Updated Dec 16, 2023

CVE-2020-10548 Scanner

CVE-2020-10548 scanner - SQL Injection (SQLi) vulnerability in rConfig

Est. Time~30 seconds
Scan TypeSingle Scan
Targetsurl
CostFree
2.8k
Times Used
continuous scan runs
4.7k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2020-10548
9.8
CVSS

rConfig 3.9.4 and previous versions has unauthenticated devices.inc.php SQL injection. Because, by default, nodes' passwords are stored in cleartext, this vulnerability leads to lateral movement, granting an attacker access to monitored network devices.

Attack Vector
-
Privileges Req.
-
User Interaction
-
Affected
n/aby n/a
n/a
Updated Aug 21, 2026View on NVD →
Detail

rConfig is a network configuration management tool designed for network engineers and administrators. It is an open-source tool that allows users to manage various devices on the network such as routers, switches, firewalls and load balancers. The software is designed to automate network configuration backups and provides real-time monitoring of network devices. rConfig also offers the ability to manage configuration compliance and secure the network infrastructure.

Recently, a vulnerability in rConfig was discovered, identified as CVE-2020-10548. This vulnerability allows an attacker to inject malicious SQL code into the device.inc.php file without requiring any authentication. This injection can lead to the escalation of privileges, enabling attackers to gain access to other devices. The attacker can also obtain cleartext passwords, making it easy for them to gain access to network devices and escalate their attack. 

The exploitation of the CVE-2020-10548  vulnerability can lead to significant security risks. Attackers can gain access to sensitive information, and further infiltrate the network infrastructure. The risk of lateral movement can have disastrous consequences for any organization, as attackers will have access to critical resources and confidential information.

Those who read this article can quickly equip themselves with the tools to identify vulnerabilities in their digital assets. s4e.io can scan networks, web applications, and databases to identify security weaknesses and provide a detailed report of any vulnerabilities found. s4e.io's pro features offer a simple and efficient way for organizations to stay ahead of cyber-attacks and protect digital assets effectively.

 

REFERENCES

Solution Advice

Precautions can be taken to protect against this vulnerability. Here are some of the steps that can be implemented:

  • Upgrade to rConfig 3.9.5 or higher to patch the vulnerability.
  • Implement multi-factor authentication to prevent unauthorized access.
  • Regularly monitor the network for any unusual activity.
  • Modify the default setting to store device passwords outside rConfig, making them less susceptible to exploitation.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.

CVE-2020-10548 scanner - SQL Injection (SQLi) vulnerability in rConfig | S4E