Логотип exploitDog
bind:CVE-2018-15137
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-15137

Количество 2

Количество 2

nvd логотип

CVE-2018-15137

больше 7 лет назад

CeLa Link CLR-M20 devices allow unauthorized users to upload any file (e.g., asp, aspx, cfm, html, jhtml, jsp, or shtml), which causes remote code execution as well. Because of the WebDAV feature, it is possible to upload arbitrary files by utilizing the PUT method.

CVSS3: 9.8
EPSS: Средний
github логотип

GHSA-cfpx-jvfr-xh8w

больше 3 лет назад

CeLa Link CLR-M20 devices allow unauthorized users to upload any file (e.g., asp, aspx, cfm, html, jhtml, jsp, or shtml), which causes remote code execution as well. Because of the WebDAV feature, it is possible to upload arbitrary files by utilizing the PUT method.

CVSS3: 9.8
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2018-15137

CeLa Link CLR-M20 devices allow unauthorized users to upload any file (e.g., asp, aspx, cfm, html, jhtml, jsp, or shtml), which causes remote code execution as well. Because of the WebDAV feature, it is possible to upload arbitrary files by utilizing the PUT method.

CVSS3: 9.8
28%
Средний
больше 7 лет назад
github логотип
GHSA-cfpx-jvfr-xh8w

CeLa Link CLR-M20 devices allow unauthorized users to upload any file (e.g., asp, aspx, cfm, html, jhtml, jsp, or shtml), which causes remote code execution as well. Because of the WebDAV feature, it is possible to upload arbitrary files by utilizing the PUT method.

CVSS3: 9.8
28%
Средний
больше 3 лет назад

Уязвимостей на страницу