CVE-2018-12316

Publication date

2018-12-04 17:00:00

Family

mitre

State

PUBLISHED

Description

OS Command Injection in upload.cgi in ASUSTOR ADM version 3.1.1 allows attackers to execute system commands by modifying the filename POST parameter.