SonicALERT
Search

Sonicwall Signatures

 

Go to All Categories list.


  rConfig ajaxAddTemplate.php Command Injection 1

Category: WEB-ATTACKS      

lib/ajaxHandlers/ajaxAddTemplate.php in rConfig through 3.94 allows remote attackers to execute arbitrary OS commands via shell metacharacters in the fileName POST parameter.

References
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-10221


Relevant Information