Description
Microhard Systems IPn4G 1.1.0 contains a service vulnerability that allows authenticated users to enable a restricted SSH shell with a default 'msshc' user. Attackers can exploit a custom 'ping' command in the NcFTP environment to escape the restricted shell and execute commands with root privileges.
Problem types
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
Product status
Credits
LiquidWorm as Gjoko Krstic of Zero Science Lab
References
www.zeroscience.mk/en/vulnerabilities/ZSL-2018-5486.php
www.exploit-db.com/exploits/45041 (ExploitDB-45041)
www.microhardcorp.com (Microhard Systems Product Homepage)
www.zeroscience.mk/en/vulnerabilities/ZSL-2018-5486.php (Zero Science Lab Disclosure (ZSL-2018-5486))
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.