Talk to our security experts and see Miggo in action.
The vulnerability stemmed from the RANCID migration feature that was completely removed in the patch. Key indicators:
In oxidized-web (aka Oxidized Web) before 0.15.0, the RANCID migration page allows an unauthenticated user to gain control over the Linux user account that is running oxidized-web.