Files
CVEs-PoC/2018/CVE-2018-5694.md
T
2024-06-18 02:51:15 +02:00

18 lines
687 B
Markdown

### [CVE-2018-5694](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-5694)
![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen)
### Description
The callforward module in User Control Panel (UCP) in Nicolas Gudino (aka Asternic) Flash Operator Panel (FOP) 2.31.03 allows remote authenticated users to execute arbitrary commands via the command parameter.
### POC
#### Reference
- https://www.vulnerability-lab.com/get_content.php?id=1907
#### Github
No PoCs found on GitHub currently.