SonicALERT
Search

Sonicwall Signatures

 

Go to All Categories list.


  Exhibitor Web UI Command Injection 2

Category: WEB-ATTACKS      

An exploitable command injection vulnerability exists in the Config editor of the Exhibitor Web UI versions 1.0.9 to 1.7.1. Arbitrary shell commands can be inserted into the editor and will be executed by the Exhibitor process when it launches ZooKeeper.


Relevant Information