RSS   Vulnerabilities for 'Jiacrontab'   RSS

2018-12-03
 
CVE-2018-19793

CWE-noinfo
 

 
jiacrontab 1.4.5 allows remote attackers to execute arbitrary commands via the crontab/task/edit?addr=localhost%3a20001 command and args parameters, as demonstrated by command=cat&args=/etc/passwd in the POST data.

 


Copyright 2024, cxsecurity.com

 

Back to Top