RSS   Vulnerabilities for 'Ubilling'   RSS

2020-12-10
 
CVE-2020-29311

CWE-77
 

 
Ubilling v1.0.9 allows Remote Command Execution as Root user by executing a malicious command that is injected inside the config file and being triggered by another part of the software.

 
2018-12-20
 
CVE-2018-1000827

CWE-502
 

 
Ubilling version <= 0.9.2 contains a Other/Unknown vulnerability in user-controlled parameter that can result in Disclosure of confidential data, denial of service, SSRF, remote code execution.

 


Copyright 2024, cxsecurity.com

 

Back to Top