ZeroHour

CVE-2018-12314

PoC
CVSS 3.0
7.5 high
EPSS
2%p82
Published
()
Modified
Description

Directory Traversal in downloadwallpaper.cgi in ASUSTOR ADM version 3.1.1 allows attackers to download arbitrary files by manipulating the "file" and "folder" URL parameters.

Vendors
asustor
Products
data master
Weakness
CWE-22
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.