CVE-2017-11366

Severity CVSS v4.0:
Pending analysis
Type:
CWE-78 OS Command Injections
Publication date:
21/08/2017
Last modified:
20/04/2025

Description

components/filemanager/class.filemanager.php in Codiad before 2.8.4 is vulnerable to remote command execution because shell commands can be embedded in parameter values, as demonstrated by search_file_type.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:codiad:codiad:*:*:*:*:*:*:*:* 2.8.3 (including)