- EPSS 36.75%
- Veröffentlicht 08.03.2020 22:15:11
- Zuletzt bearbeitet 07.11.2025 19:33:35
lib/ajaxHandlers/ajaxAddTemplate.php in rConfig through 3.94 allows remote attackers to execute arbitrary OS commands via shell metacharacters in the fileName POST parameter.
CVE-2020-10220
- EPSS 99.68%
- Veröffentlicht 07.03.2020 23:15:11
- Zuletzt bearbeitet 21.11.2024 04:54:59
An issue was discovered in rConfig through 3.9.4. The web interface is prone to a SQL injection via the commands.inc.php searchColumn parameter.
CVE-2019-19585
- EPSS 5.74%
- Veröffentlicht 06.01.2020 20:15:12
- Zuletzt bearbeitet 21.11.2024 04:34:59
An issue was discovered in rConfig 3.9.3. The install script updates the /etc/sudoers file for rconfig specific tasks. After an "rConfig specific Apache configuration" update, apache has high privileges for some binaries. This can be exploited by an ...
- EPSS 71.64%
- Veröffentlicht 06.01.2020 20:15:12
- Zuletzt bearbeitet 21.11.2024 04:34:51
An issue was discovered in rConfig 3.9.3. A remote authenticated user can directly execute system commands by sending a GET request to ajaxArchiveFiles.php because the path parameter is passed to the exec function without filtering, which can lead to...
CVE-2019-19372
- EPSS 1.45%
- Veröffentlicht 28.11.2019 15:15:10
- Zuletzt bearbeitet 21.11.2024 04:34:39
A downloadFile.php download_file path traversal vulnerability in rConfig through 3.9.3 allows attackers to list files in arbitrary folders and potentially download files. NOTE: the discoverer later reported that there was not a "fully working exploit...
CVE-2019-19207
- EPSS 22.74%
- Veröffentlicht 21.11.2019 22:15:15
- Zuletzt bearbeitet 21.11.2024 04:34:19
rConfig 3.9.2 allows devices.php?searchColumn= SQL injection.
- EPSS 97.7%
- Veröffentlicht 28.10.2019 12:15:10
- Zuletzt bearbeitet 21.11.2024 04:30:55
An issue was discovered in rConfig 3.9.2. An attacker can directly execute system commands by sending a GET request to ajaxServerSettingsChk.php because the rootUname parameter is passed to the exec function without filtering, which can lead to comma...
- EPSS 84.7%
- Veröffentlicht 28.10.2019 12:15:10
- Zuletzt bearbeitet 21.11.2024 04:30:55
An issue was discovered in rConfig 3.9.2. An attacker can directly execute system commands by sending a GET request to search.crud.php because the catCommand parameter is passed to the exec function without filtering, which can lead to command execut...