Логотип exploitDog
bind:CVE-2010-10013
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2010-10013

Количество 3

Количество 3

nvd логотип

CVE-2010-10013

6 месяцев назад

An unauthenticated remote command execution vulnerability exists in AjaXplorer (now known as Pydio Cells) versions prior to 2.6. The flaw resides in the checkInstall.php script within the access.ssh plugin, which fails to properly sanitize user-supplied input to the destServer GET parameter. By injecting shell metacharacters, remote attackers can execute arbitrary system commands on the server with the privileges of the web server process.

EPSS: Средний
debian логотип

CVE-2010-10013

6 месяцев назад

An unauthenticated remote command execution vulnerability exists in Aj ...

EPSS: Средний
github логотип

GHSA-6xxj-wqc6-8pq7

6 месяцев назад

An unauthenticated remote command execution vulnerability exists in AjaXplorer (now known as Pydio Cells) versions prior to 2.6. The flaw resides in the checkInstall.php script within the access.ssh plugin, which fails to properly sanitize user-supplied input to the destServer GET parameter. By injecting shell metacharacters, remote attackers can execute arbitrary system commands on the server with the privileges of the web server process.

EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2010-10013

An unauthenticated remote command execution vulnerability exists in AjaXplorer (now known as Pydio Cells) versions prior to 2.6. The flaw resides in the checkInstall.php script within the access.ssh plugin, which fails to properly sanitize user-supplied input to the destServer GET parameter. By injecting shell metacharacters, remote attackers can execute arbitrary system commands on the server with the privileges of the web server process.

61%
Средний
6 месяцев назад
debian логотип
CVE-2010-10013

An unauthenticated remote command execution vulnerability exists in Aj ...

61%
Средний
6 месяцев назад
github логотип
GHSA-6xxj-wqc6-8pq7

An unauthenticated remote command execution vulnerability exists in AjaXplorer (now known as Pydio Cells) versions prior to 2.6. The flaw resides in the checkInstall.php script within the access.ssh plugin, which fails to properly sanitize user-supplied input to the destServer GET parameter. By injecting shell metacharacters, remote attackers can execute arbitrary system commands on the server with the privileges of the web server process.

61%
Средний
6 месяцев назад

Уязвимостей на страницу