SonicALERT
Search

Sonicwall Signatures

 

Go to All Categories list.


  VestaCP FTP Command Injection 2

Category: FTP      

Vesta Control Panel (VestaCP) through 0.9.8-26 allows Command Injection via the schedule/backup Backup Listing Endpoint. The attacker must be able to create a crafted filename on the server.


Relevant Information