CVE-2018-12312
04.12.2018, 17:29
OS command injection in user.cgi in ASUSTOR ADM version 3.1.1 allows attackers to execute system commands as root via the "secret_key" URL parameter.
Vendor | Product | Version |
---|---|---|
asustor | data_master | 3.1.1 |
𝑥
= Vulnerable software versions