Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
terra-master terramaster operating system vulnerabilities and exploits
(subscribe to this query)
10
CVSSv2
CVE-2020-35665
An unauthenticated command-execution vulnerability exists in TerraMaster TOS up to and including 4.2.06 via shell metacharacters in the Event parameter in include/makecvs.php during CSV creation.
Terra-master Terramaster Operating System
1 Metasploit module
9
CVSSv2
CVE-2018-13330
System command injection in ajaxdata.php in TerraMaster TOS version 3.1.03 allows malicious users to execute system commands during group creation via the "groupname" parameter.
Terra-master Terramaster Operating System 3.1.03
3.5
CVSSv2
CVE-2018-13351
Cross-site scripting in Control Panel in TerraMaster TOS version 3.1.03 allows malicious users to execute JavaScript via the edit password form.
Terra-master Terramaster Operating System 3.1.03
9
CVSSv2
CVE-2018-13356
Incorrect access control on ajaxdata.php in TerraMaster TOS version 3.1.03 allows malicious users to elevate user permissions.
Terra-master Terramaster Operating System 3.1.03
5
CVSSv2
CVE-2018-13361
User enumeration in usertable.php in TerraMaster TOS version 3.1.03 allows malicious users to list all system users via the "modgroup" parameter.
Terra-master Terramaster Operating System 3.1.03
9
CVSSv2
CVE-2018-13418
System command injection in ajaxdata.php in TerraMaster TOS 3.1.03 allows malicious users to execute system commands via the "newname" parameter.
Terra-master Terramaster Operating System 3.1.03
5
CVSSv2
CVE-2018-13332
Directory Traversal in the explorer application in TerraMaster TOS version 3.1.03 allows malicious users to upload files to arbitrary locations via the "path" URL parameter.
Terra-master Terramaster Operating System 3.1.03
9
CVSSv2
CVE-2018-13358
System command injection in ajaxdata.php in TerraMaster TOS version 3.1.03 allows malicious users to execute system commands via the "checkName" parameter.
Terra-master Terramaster Operating System 3.1.03
4.3
CVSSv2
CVE-2018-13331
Cross-site scripting in Control Panel in TerraMaster TOS version 3.1.03 allows malicious users to execute JavaScript when viewing users by placing JavaScript in their usernames.
Terra-master Terramaster Operating System 3.1.03
4.3
CVSSv2
CVE-2018-13333
Cross-site scripting in File Manager in TerraMaster TOS version 3.1.03 allows malicious users to execute JavaScript in the permissions window by placing JavaScript in users' usernames.
Terra-master Terramaster Operating System 3.1.03
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-52710
arbitrary
CVE-2024-5272
CVE-2024-2961
brute force
remote
CVE-2024-32944
CVE-2024-36241
CVE-2024-5274
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
NEXT »