cgi-cpn/xcoding/prontus_videocut.cgi in AltaVoz Prontus (aka ProntusCMS) through 12.0.3.0 has "Improper Neutralization of Special Elements used in an OS Command," allowing attackers to execute OS commands via an HTTP GET parameter.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2019-08-26T17:21:43
Updated: 2024-08-05T00:49:13.558Z
Reserved: 2019-08-23T00:00:00
Link: CVE-2019-15503
Vulnrichment
No data.
NVD
Status : Modified
Published: 2019-08-26T18:15:12.280
Modified: 2024-11-21T04:28:53.003
Link: CVE-2019-15503
Redhat
No data.