SonicALERT
Search

Sonicwall Signatures

 

Go to All Categories list.


  ASUS ASUSTOR ADM aggrecate_js Remote Code Execution

Category: IoT-ATTACKS      

The ASUSTOR ADM 3.1.0.RFQ3 NAS portal suffers from an unauthenticated remote code execution vulnerability in the portal/apis/aggrecate_js.cgi file by embedding OS commands in the 'script' parameter.

References
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-11510


Relevant Information