Security Advisory
CVE-2019-11062
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
The SUNNET WMPro v5.0 and v5.1 for eLearning system has OS Command Injection via "/teach/course/doajaxfileupload.php". The target server can be exploited without authentication.