CVE-2020-7847
23.02.2021, 16:15
The ipTIME NAS product allows an arbitrary file upload vulnerability in the Manage Bulletins/Upload feature, which can be leveraged to gain remote code execution. This issue affects: pTIME NAS 1.4.36.Enginsight
Vendor | Product | Version |
---|---|---|
iptime | nas-i_firmware | 𝑥 < 1.4.36 |
iptime | nas-ii_firmware | 𝑥 < 1.4.36 |
iptime | nas-iie_firmware | 𝑥 < 1.4.36 |
iptime | nas101_firmware | 𝑥 < 1.4.36 |
iptime | nas1dual_firmware | 𝑥 < 1.4.36 |
iptime | nas2dual_firmware | 𝑥 < 1.4.36 |
iptime | nas3_firmware | 𝑥 < 1.4.36 |
iptime | nas4_firmware | 𝑥 < 1.4.36 |
iptime | nas4dual_firmware | 𝑥 < 1.4.36 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration