mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-12 05:11:38 +02:00
859 B
859 B
CVE-2018-15529
Description
A command injection vulnerability in maintenance.cgi in Mutiny "Monitoring Appliance" before 6.1.0-5263 allows authenticated users, with access to the admin interface, to inject arbitrary commands within the filename of a system upgrade upload.
POC
Reference
- http://packetstormsecurity.com/files/149065/Mutiny-Monitoring-Appliance-Command-Injection.html
- http://packetstormsecurity.com/files/149065/Mutiny-Monitoring-Appliance-Command-Injection.html
Github
No PoCs found on GitHub currently.