Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4f4v-5vf8-2xmf

Опубликовано: 13 янв. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 7.2

Описание

Arbitrary file upload vulnerability exists in the web-based management interface of mobility conductors running either AOS-10 or AOS-8 operating systems. Successful exploitation could allow an authenticated malicious actor to upload arbitrary files as a privilege user and execute arbitrary commands on the underlying operating system.

Arbitrary file upload vulnerability exists in the web-based management interface of mobility conductors running either AOS-10 or AOS-8 operating systems. Successful exploitation could allow an authenticated malicious actor to upload arbitrary files as a privilege user and execute arbitrary commands on the underlying operating system.

EPSS

Процентиль: 21%
0.00066
Низкий

7.2 High

CVSS3

Дефекты

CWE-434

Связанные уязвимости

CVSS3: 7.2
nvd
25 дней назад

Arbitrary file upload vulnerability exists in the web-based management interface of mobility conductors running either AOS-10 or AOS-8 operating systems. Successful exploitation could allow an authenticated malicious actor to upload arbitrary files as a privilege user and execute arbitrary commands on the underlying operating system.

EPSS

Процентиль: 21%
0.00066
Низкий

7.2 High

CVSS3

Дефекты

CWE-434