cve/2018/CVE-2018-13336.md
2024-06-18 02:51:15 +02:00

677 B

CVE-2018-13336

Description

System command injection in ajaxdata.php in TerraMaster TOS version 3.1.03 allows attackers to execute system commands via the "pwd" parameter during user creation.

POC

Reference

Github

No PoCs found on GitHub currently.