Логотип exploitDog
bind:CVE-2017-18378
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2017-18378

Количество 2

Количество 2

nvd логотип

CVE-2017-18378

больше 6 лет назад

In NETGEAR ReadyNAS Surveillance before 1.4.3-17 x86 and before 1.1.4-7 ARM, $_GET['uploaddir'] is not escaped and is passed to system() through $tmp_upload_dir, leading to upgrade_handle.php?cmd=writeuploaddir remote command execution.

CVSS3: 8.4
EPSS: Средний
github логотип

GHSA-mwvv-2fff-4jmx

больше 3 лет назад

In NETGEAR ReadyNAS Surveillance before 1.4.3-17 x86 and before 1.1.4-7 ARM, $_GET['uploaddir'] is not escaped and is passed to system() through $tmp_upload_dir, leading to upgrade_handle.php?cmd=writeuploaddir remote command execution.

CVSS3: 9.8
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2017-18378

In NETGEAR ReadyNAS Surveillance before 1.4.3-17 x86 and before 1.1.4-7 ARM, $_GET['uploaddir'] is not escaped and is passed to system() through $tmp_upload_dir, leading to upgrade_handle.php?cmd=writeuploaddir remote command execution.

CVSS3: 8.4
16%
Средний
больше 6 лет назад
github логотип
GHSA-mwvv-2fff-4jmx

In NETGEAR ReadyNAS Surveillance before 1.4.3-17 x86 and before 1.1.4-7 ARM, $_GET['uploaddir'] is not escaped and is passed to system() through $tmp_upload_dir, leading to upgrade_handle.php?cmd=writeuploaddir remote command execution.

CVSS3: 9.8
16%
Средний
больше 3 лет назад

Уязвимостей на страницу