Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
terra-master vulnerabilities and exploits
(subscribe to this query)
9
CVSSv2
CVE-2018-13330
System command injection in ajaxdata.php in TerraMaster TOS version 3.1.03 allows malicious users to execute system commands during group creation via the "groupname" parameter.
Terra-master Terramaster Operating System 3.1.03
4.3
CVSSv2
CVE-2018-13331
Cross-site scripting in Control Panel in TerraMaster TOS version 3.1.03 allows malicious users to execute JavaScript when viewing users by placing JavaScript in their usernames.
Terra-master Terramaster Operating System 3.1.03
4
CVSSv2
CVE-2018-13355
Incorrect access controls in ajaxdata.php in TerraMaster TOS version 3.1.03 allow malicious users to create user groups without proper authorization.
Terra-master Terramaster Operating System 3.1.03
9
CVSSv2
CVE-2018-13356
Incorrect access control on ajaxdata.php in TerraMaster TOS version 3.1.03 allows malicious users to elevate user permissions.
Terra-master Terramaster Operating System 3.1.03
3.5
CVSSv2
CVE-2018-13357
Cross-site scripting in Control Panel in TerraMaster TOS version 3.1.03 allows malicious users to execute JavaScript when viewing Shared Folders via JavaScript in Shared Folders' names.
Terra-master Terramaster Operating System 3.1.03
9
CVSSv2
CVE-2018-13358
System command injection in ajaxdata.php in TerraMaster TOS version 3.1.03 allows malicious users to execute system commands via the "checkName" parameter.
Terra-master Terramaster Operating System 3.1.03
6.8
CVSSv2
CVE-2018-13359
Cross-site scripting in usertable.php in TerraMaster TOS version 3.1.03 allows malicious users to execute JavaScript via the "modgroup" parameter.
Terra-master Terramaster Operating System 3.1.03
4.3
CVSSv2
CVE-2018-13360
Cross-site scripting in Text Editor in TerraMaster TOS version 3.1.03 allows malicious users to execute JavaScript via the "filename" URL parameter.
Terra-master Terramaster Operating System 3.1.03
5
CVSSv2
CVE-2018-13361
User enumeration in usertable.php in TerraMaster TOS version 3.1.03 allows malicious users to list all system users via the "modgroup" parameter.
Terra-master Terramaster Operating System 3.1.03
4.3
CVSSv2
CVE-2018-13333
Cross-site scripting in File Manager in TerraMaster TOS version 3.1.03 allows malicious users to execute JavaScript in the permissions window by placing JavaScript in users' usernames.
Terra-master Terramaster Operating System 3.1.03
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-7073
CVE-2024-5496
CVE-2024-5495
XPath injection
bypass
CVE-2024-30043
CVE-2024-24919
denial of service
CVE-2024-35468
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
NEXT »