Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
terra-master terramaster operating system vulnerabilities and exploits
(subscribe to this query)
6.1
CVSSv3
CVE-2018-13334
Cross-site scripting in handle.php in TerraMaster TOS version 3.1.03 allows malicious users to execute JavaScript via the "options[sysname]" parameter.
Terra-master Terramaster Operating System 3.1.03
5.4
CVSSv3
CVE-2018-13335
Cross-site scripting in Control Panel in TerraMaster TOS version 3.1.03 allows malicious users to execute JavaScript when viewing shared folders via their descriptions.
Terra-master Terramaster Operating System 3.1.03
9.8
CVSSv3
CVE-2018-13336
System command injection in ajaxdata.php in TerraMaster TOS version 3.1.03 allows malicious users to execute system commands via the "pwd" parameter during user creation.
Terra-master Terramaster Operating System 3.1.03
5.4
CVSSv3
CVE-2018-13337
Session Fixation in the web application for TerraMaster TOS version 3.1.03 allows malicious users to control users' session cookies via JavaScript.
Terra-master Terramaster Operating System 3.1.03
9.8
CVSSv3
CVE-2018-13338
System command injection in ajaxdata.php in TerraMaster TOS version 3.1.03 allows malicious users to execute system commands via the "username" parameter during user creation.
Terra-master Terramaster Operating System 3.1.03
6.1
CVSSv3
CVE-2018-13349
Cross-site scripting in the web application taskbar in TerraMaster TOS version 3.1.03 allows malicious users to execute JavaScript via the user's username.
Terra-master Terramaster Operating System 3.1.03
9.8
CVSSv3
CVE-2018-13350
SQL injection in logtable.php in TerraMaster TOS version 3.1.03 allows malicious users to execute SQL queries via the "Event" parameter.
Terra-master Terramaster Operating System 3.1.03
4.8
CVSSv3
CVE-2018-13351
Cross-site scripting in Control Panel in TerraMaster TOS version 3.1.03 allows malicious users to execute JavaScript via the edit password form.
Terra-master Terramaster Operating System 3.1.03
7.5
CVSSv3
CVE-2018-13352
Session Exposure in the web application for TerraMaster TOS version 3.1.03 allows malicious users to view active session tokens in a world-readable directory.
Terra-master Terramaster Operating System 3.1.03
8.8
CVSSv3
CVE-2018-13353
System command injection in ajaxdata.php in TerraMaster TOS version 3.1.03 allows malicious users to execute commands via the "checkport" parameter.
Terra-master Terramaster Operating System 3.1.03
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-5324
path traversal
CVE-2024-4743
CVE-2024-5184
TCP
CVE-2024-27822
code injection
CVE-2024-28995
CVE-2023-20938
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
NEXT »