CVE-2018-11342

Severity CVSS v4.0:
Pending analysis
Type:
CWE-22 Path Traversal
Publication date:
22/05/2018
Last modified:
29/03/2019

Description

A path traversal vulnerability in fileExplorer.cgi in ASUSTOR AS6202T ADM 3.1.0.RFQ3 allows attackers to arbitrarily specify a path to a file on the system to create folders via the dest_folder parameter.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:asustor:as6202t_firmware:*:*:*:*:*:*:*:* adm_3.1.0.rfq3 (including)
cpe:2.3:h:asustor:as6202t:-:*:*:*:*:*:*:*