CVE-2026-2957
- EPSS 0.05%
- Veröffentlicht 22.02.2026 23:15:59
- Zuletzt bearbeitet 25.02.2026 17:36:59
A weakness has been identified in qinming99 dst-admin up to 1.5.0. This impacts the function deleteBackup of the file src/main/java/com/tugos/dst/admin/controller/BackupController.java of the component File Handler. This manipulation causes denial of...
CVE-2026-2956
- EPSS 0.35%
- Veröffentlicht 22.02.2026 22:15:59
- Zuletzt bearbeitet 25.02.2026 17:43:53
A security flaw has been discovered in qinming99 dst-admin up to 1.5.0. This affects the function revertBackup of the file /home/restore. The manipulation of the argument Name results in command injection. The attack can be launched remotely. The exp...
CVE-2023-43270
- EPSS 3.51%
- Veröffentlicht 22.09.2023 19:15:11
- Zuletzt bearbeitet 21.11.2024 08:23:55
dst-admin v1.5.0 was discovered to contain a remote command execution (RCE) vulnerability via the userId parameter at /home/playerOperate.
CVE-2023-0648
- EPSS 6.26%
- Veröffentlicht 02.02.2023 15:17:41
- Zuletzt bearbeitet 21.11.2024 07:37:33
A vulnerability, which was classified as critical, was found in dst-admin 1.5.0. This affects an unknown part of the file /home/masterConsole. The manipulation of the argument command leads to command injection. It is possible to initiate the attack ...
CVE-2023-0649
- EPSS 6.26%
- Veröffentlicht 02.02.2023 15:17:41
- Zuletzt bearbeitet 21.11.2024 07:37:33
A vulnerability has been found in dst-admin 1.5.0 and classified as critical. This vulnerability affects unknown code of the file /home/sendBroadcast. The manipulation of the argument message leads to command injection. The attack can be initiated re...
CVE-2023-0647
- EPSS 2.61%
- Veröffentlicht 02.02.2023 15:17:40
- Zuletzt bearbeitet 21.11.2024 07:37:33
A vulnerability, which was classified as critical, has been found in dst-admin 1.5.0. Affected by this issue is some unknown functionality of the file /home/kickPlayer. The manipulation of the argument userId leads to command injection. The attack ma...
CVE-2023-0646
- EPSS 6.26%
- Veröffentlicht 02.02.2023 15:17:39
- Zuletzt bearbeitet 21.11.2024 07:37:32
A vulnerability classified as critical was found in dst-admin 1.5.0. Affected by this vulnerability is an unknown functionality of the file /home/cavesConsole. The manipulation of the argument command leads to command injection. The attack can be lau...
CVE-2021-44586
- EPSS 0.39%
- Veröffentlicht 10.01.2022 15:15:08
- Zuletzt bearbeitet 21.11.2024 06:31:14
An issue was discovered in dst-admin v1.3.0. The product has an unauthorized arbitrary file download vulnerability that can expose sensitive information.