Security Advisory
CVE-2019-15746
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
SITOS six Build v6.2.1 allows an attacker to inject arbitrary PHP commands. As a result, an attacker can compromise the running server and execute system commands in the context of the web user.