A command-injection vulnerability in the Image Upload function of the NASCENT RemKon Device Manager 4.0.0.0 allows attackers to execute arbitrary commands, as root, via shell metacharacters in the filename parameter to assets/index.php.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2021-08-24T11:05:42

Updated: 2024-08-04T01:44:23.464Z

Reserved: 2021-08-12T00:00:00

Link: CVE-2021-38611

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2021-08-24T12:15:09.403

Modified: 2021-08-31T11:30:40.837

Link: CVE-2021-38611

cve-icon Redhat

No data.