Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fmhc-jpp5-xxhq

Опубликовано: 09 июл. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 6

Описание

An improper Input Validation vulnerability allows injecting arbitrary values of the NAS configuration file in ASUSTOR ADM. This could potentially lead to system misconfiguration and break the format of the configuation file, causing the NAS to exhibit unexpected behavior. This issue affects ADM: from 4.1 before 4.3.1.R5A1.

An improper Input Validation vulnerability allows injecting arbitrary values of the NAS configuration file in ASUSTOR ADM. This could potentially lead to system misconfiguration and break the format of the configuation file, causing the NAS to exhibit unexpected behavior. This issue affects ADM: from 4.1 before 4.3.1.R5A1.

EPSS

Процентиль: 10%
0.00036
Низкий

6 Medium

CVSS4

Дефекты

CWE-20

Связанные уязвимости

nvd
2 месяца назад

An improper Input Validation vulnerability allows injecting arbitrary values of the NAS configuration file in ASUSTOR ADM. This could potentially lead to system misconfiguration and break the format of the configuation file, causing the NAS to exhibit unexpected behavior. This issue affects ADM: from 4.1 before 4.3.1.R5A1.

EPSS

Процентиль: 10%
0.00036
Низкий

6 Medium

CVSS4

Дефекты

CWE-20