Security Advisory

CVE-2018-15529

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-08-28 17:00:00
Last updated 2024-08-05 09:54:03
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

A command injection vulnerability in maintenance.cgi in Mutiny "Monitoring Appliance" before 6.1.0-5263 allows authenticated users, with access to the admin interface, to inject arbitrary commands within the filename of a system upgrade upload.