Логотип exploitDog
bind:CVE-2020-15568
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-15568

Количество 2

Количество 2

nvd логотип

CVE-2020-15568

около 5 лет назад

TerraMaster TOS before 4.1.29 has Invalid Parameter Checking that leads to code injection as root. This is a dynamic class method invocation vulnerability in include/exportUser.php, in which an attacker can trigger a call to the exec method with (for example) OS commands in the opt parameter.

CVSS3: 9.8
EPSS: Критический
github логотип

GHSA-j542-2x58-5jg4

больше 3 лет назад

TerraMaster TOS before 4.1.29 has Invalid Parameter Checking that leads to code injection as root. This is a dynamic class method invocation vulnerability in include/exportUser.php, in which an attacker can trigger a call to the exec method with (for example) OS commands in the opt parameter.

EPSS: Критический

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-15568

TerraMaster TOS before 4.1.29 has Invalid Parameter Checking that leads to code injection as root. This is a dynamic class method invocation vulnerability in include/exportUser.php, in which an attacker can trigger a call to the exec method with (for example) OS commands in the opt parameter.

CVSS3: 9.8
93%
Критический
около 5 лет назад
github логотип
GHSA-j542-2x58-5jg4

TerraMaster TOS before 4.1.29 has Invalid Parameter Checking that leads to code injection as root. This is a dynamic class method invocation vulnerability in include/exportUser.php, in which an attacker can trigger a call to the exec method with (for example) OS commands in the opt parameter.

93%
Критический
больше 3 лет назад

Уязвимостей на страницу