S4E just found a high top 10 tcp port service scan
high·Product Based Network Vulnerabilities·Updated Oct 8, 2024

CVE-2023-34105 Scanner

CVE-2023-34105 Scanner - Command Injection vulnerability in SRS

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsdomain, ipv4, subdomain
CostFree
0
Times Used
by S4E users
0
Assets Scanned
domains & IPs
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2023-34105
7.5
CVSShigh
Exploitable remotely over the internet · no authentication required · user interaction needed.

SRS is a real-time video server supporting RTMP, WebRTC, HLS, HTTP-FLV, SRT, MPEG-DASH, and GB28181. Prior to versions 5.0.157, 5.0-b1, and 6.0.48, SRS's `api-server` server is vulnerable to a drive-by command injection. An attacker may send a request to the `/api/v1/snapshots` endpoint containing any commands to be executed as part of the body of the POST request. This issue may lead to Remote Code Execution (RCE). Versions 5.0.157, 5.0-b1, and 6.0.48 contain a fix.

Attack Vector
Network
Privileges Req.
None
User Interaction
Required
Affected
srsby ossrs
>= 5.0.137, < 5.0.157
Updated Aug 22, 2026View on NVD →
Detail

Simple Realtime Server (SRS) is a feature-rich media server, widely utilized for real-time streaming and low-latency media delivery. It is often implemented by organizations and services that require efficient and scalable streaming solutions. Developers and content creators leverage SRS for its robust API support and flexible configurations. With capabilities for both on-demand and live streaming, SRS supports diverse use cases in entertainment, broadcasting, and online communication. The software's modular architecture accommodates various media protocols, making it adaptable to numerous deployment environments. SRS's support for interactive video conferencing and live broadcasting ensures a comprehensive solution for media distribution needs.

Command injection is a critical vulnerability that allows an attacker to execute arbitrary commands on the host operating system via a vulnerable application. In the context of Simple Realtime Server, this vulnerability can provide unauthorized access and control over the server environment. Attackers may exploit this flaw by inserting malicious commands into input fields processed by the server. Successful exploitation could result in the execution of arbitrary shell commands, thereby compromising data integrity and server functionality. The vulnerability affects specific versions of SRS API-server, posing significant security risks. Due to the potential impact on confidentiality, integrity, and availability, addressing this vulnerability is paramount.

The vulnerability exists within the 'api-server' component of Simple Realtime Server, specifically in the endpoint that handles snapshot requests. Attackers exploit this flaw by passing a specially crafted JSON payload containing shell command syntax. The vulnerable parameter in the payload ('app' field) is manipulated to execute unauthorized commands. The command injection occurs during input processing within the server’s API handling logic. Exploitation requires specific knowledge of the server endpoints and payload construction, emphasizing the criticality of secure input validation. The server's incapability to sanitize and validate input data properly leads to this severe security weakness.

Exploiting this command injection vulnerability can have severe repercussions, including unauthorized system access and data breaches. Attackers could leverage the flaw to gain control over the server, execute malicious software, and steal sensitive information. Such activities could disrupt service availability, compromise data confidentiality, and damage organizational reputation. The potential for lateral movement within a network further exacerbates the risk, allowing attackers to exploit additional systems. Furthermore, command injection vulnerabilities can serve as entry points for more sophisticated attacks such as privilege escalation and remote code execution. It is vital to close this security gap to prevent far-reaching adverse effects.

REFERENCES

Solution Advice
  • Ensure proper input validation and sanitization across all API endpoints.
  • Implement strict output encoding to prevent unintended command execution.
  • Regularly update the server software to incorporate security patches addressing known vulnerabilities.
  • Conduct regular security audits to identify and remediate potential security weaknesses.
  • Restrict permissions for executing shell commands to necessary operations only.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.