A command-injection vulnerability in the Image Upload function of the NASCENT RemKon Device Manager 4.0.0.0 allows attackers to execute arbitrary commands, as root, via shell metacharacters in the filename parameter to assets/index.php.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-04T01:44:23.464Z

Reserved: 2021-08-12T00:00:00

Link: CVE-2021-38611

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-08-24T12:15:09.403

Modified: 2024-11-21T06:17:41.343

Link: CVE-2021-38611

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.