CVE-2015-5452 EXPLOIT
7.5
HIGH · CVSS 2.0 · EPSS 3.4% (pctl 89)
Patch early
A public exploit exists.
Description
SQL injection vulnerability in Watchguard XCS 9.2 and 10.0 before build 150522 allows remote attackers to execute arbitrary SQL commands via the sid cookie, as demonstrated by a request to borderpost/imp/compose.php3.
Scoring
| CVSS | 7.5 (HIGH, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
| EPSS | 3.42% — more likely to be exploited than 89% of all CVEs |
| Weakness | CWE-89 |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2015-07-08 |
| Last modified | 2026-06-17 |
Affected (1)
| Vendor | Product |
|---|---|
| watchguard | xcs |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Watchguard XCS - Remote Command Execution (Metasploit) | 2015-09-28 |
| exploit-db | Watchguard XCS 10.0 - Multiple Vulnerabilities | 2015-06-30 |
References
- http://packetstormsecurity.com/files/132498/Watchguard-XCS-10.0-SQL-Injection-Command-Execution.html
- http://packetstormsecurity.com/files/133721/Watchguard-XCS-Remote-Command-Execution.html
- http://www.rapid7.com/db/modules/exploit/freebsd/http/watchguard_cmd_exec
- http://www.security-assessment.com/files/documents/advisory/Watchguard-XCS-final.pdf
- http://www.securityfocus.com/bid/75516
- http://www.watchguard.com/support/release-notes/xcs/10/en-US/EN_Release_Notes_XCS_v10_0_Security_Hotfix/EN_Release_Notes_XCS_v10_0_Security_Hotfix.pdf
- http://www.watchguard.com/support/release-notes/xcs/9/en-US/EN_ReleaseNotes_XCS_9_2_Security_Hotfix/EN_Release_Notes_XCS_v9_2_Security_Hotfix.pdf
- https://www.exploit-db.com/exploits/38346/
- http://packetstormsecurity.com/files/132498/Watchguard-XCS-10.0-SQL-Injection-Command-Execution.html
- http://packetstormsecurity.com/files/133721/Watchguard-XCS-Remote-Command-Execution.html
- http://www.rapid7.com/db/modules/exploit/freebsd/http/watchguard_cmd_exec
- http://www.security-assessment.com/files/documents/advisory/Watchguard-XCS-final.pdf
- http://www.securityfocus.com/bid/75516
- http://www.watchguard.com/support/release-notes/xcs/10/en-US/EN_Release_Notes_XCS_v10_0_Security_Hotfix/EN_Release_Notes_XCS_v10_0_Security_Hotfix.pdf
- http://www.watchguard.com/support/release-notes/xcs/9/en-US/EN_ReleaseNotes_XCS_9_2_Security_Hotfix/EN_Release_Notes_XCS_v9_2_Security_Hotfix.pdf
- https://www.exploit-db.com/exploits/38346/
→ the Explorer · watch your stack · NVD