Vulnerabilities (CVE)

Filtered by vendor Nascent Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-38613 1 Nascent 1 Remkon Device Manager 2021-10-05 10.0 HIGH 9.8 CRITICAL
The assets/index.php Image Upload feature of the NASCENT RemKon Device Manager 4.0.0.0 allows attackers to upload any code to the target system and achieve remote code execution.
CVE-2021-38611 1 Nascent 1 Remkon Device Manager 2021-08-31 10.0 HIGH 9.8 CRITICAL
A command-injection vulnerability in the Image Upload function of the NASCENT RemKon Device Manager 4.0.0.0 allows attackers to execute arbitrary commands, as root, via shell metacharacters in the filename parameter to assets/index.php.