Description
ASUSTOR Data Master 3.1.5 and below allows authenticated remote non-administrative users to upload files to arbitrary locations due to a path traversal vulnerability. This could lead to code execution if the "Web Server" feature is enabled.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-7564 | ASUSTOR Data Master 3.1.5 and below allows authenticated remote non-administrative users to upload files to arbitrary locations due to a path traversal vulnerability. This could lead to code execution if the "Web Server" feature is enabled. |
References
| Link | Providers |
|---|---|
| https://www.tenable.com/security/research/tra-2018-22 |
|
History
No history.
Status: PUBLISHED
Assigner: tenable
Published:
Updated: 2024-09-16T17:48:48.116Z
Reserved: 2018-08-22T00:00:00.000Z
Link: CVE-2018-15694
No data.
Status : Modified
Published: 2018-08-27T14:29:00.227
Modified: 2024-11-21T03:51:17.480
Link: CVE-2018-15694
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD