CVE-2017-6526

Severity CVSS v4.0:
Pending analysis
Type:
CWE-287 Authentication Issues
Publication date:
09/03/2017
Last modified:
20/04/2025

Description

An issue was discovered in dnaTools dnaLIMS 4-2015s13. dnaLIMS is vulnerable to unauthenticated command execution through an improperly protected administrative web shell (cgi-bin/dna/sysAdmin.cgi POST requests).

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:dnatools:dnalims:4-2015s13:*:*:*:*:*:*:*