Actively Exploited in the Wild

This vulnerability is being actively exploited in the wild.

Openfiler Command Injection Vulnerability in NetworkCard Object Execution

Vulnerability

A command injection vulnerability has been identified in Openfiler versions 2.x, specifically in the system.html page. The vulnerability arises because the device parameter is used to create a NetworkCard object, which is then executed with unsanitized input. This flaw allows authenticated attackers to execute arbitrary commands as the openfiler user. Additionally, due to improperly configured sudoers, the openfiler user can escalate privileges to root by executing sudo /bin/bash without a password.

Impact

Exploitation of this vulnerability allows for arbitrary command execution on the affected system, with the executed commands running under the openfiler user. This could lead to unauthorized actions being performed on the system, including potential privilege escalation to root.

Reproduction

To reproduce this vulnerability, an authenticated user can send a request to the '/admin/system.html' page with a crafted 'device' parameter. The injected command should be encoded to bypass input sanitization. Once the command is executed, the openfiler user can use sudo to gain root access.

Added: Aug 11, 2025, 3:25 PM
Updated: Aug 11, 2025, 3:25 PM

Vulnerability Rating

Custom Algorithm
spread
5.0
impact
10.0
exploitability
6.9
remediation
8.3
relevance
0.3
threat
9.1
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.