cgi-cpn/xcoding/prontus_videocut.cgi in AltaVoz Prontus (aka ProntusCMS) through 12.0.3.0 has "Improper Neutralization of Special Elements used in an OS Command," allowing attackers to execute OS commands via an HTTP GET parameter.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2019-08-26T17:21:43

Updated: 2024-08-05T00:49:13.558Z

Reserved: 2019-08-23T00:00:00

Link: CVE-2019-15503

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2019-08-26T18:15:12.280

Modified: 2019-08-30T16:46:29.580

Link: CVE-2019-15503

cve-icon Redhat

No data.