CVE-2010-20059
20.08.2025, 16:15
FreeNAS 0.7.2 prior to revision 5543 includes an unauthenticated commandexecution backdoor in its web interface. The exec_raw.php script exposes a cmd parameter that is passed directly to the underlying shell without sanitation.
Awaiting analysis
This vulnerability is currently awaiting analysis.
References