ASUSTOR ADM 3.1.1 upload.cgi OS Command Injection Vulnerability

ASUSTOR ADM 3.1.1 upload.cgi OS Command Injection Vulnerability

CVE-2018-12316 · HIGH Severity

AV:N/AC:L/AU:S/C:C/I:C/A:C

OS Command Injection in upload.cgi in ASUSTOR ADM version 3.1.1 allows attackers to execute system commands by modifying the filename POST parameter.

Learn more about our Web Application Penetration Testing UK.