Accellion Secure File Transfer Appliance prior to 8_0_105 allows remote authenticated administrators to bypass the restricted shell and execute arbitrary commands via shell metacharacters to the ping command, as demonstrated by modifying the cli program.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
accellion secure file transfer appliance 7_0_296 |
||
accellion secure file transfer appliance 7_0_189 |
||
accellion secure file transfer appliance 7_0_259 |
||
accellion secure file transfer appliance 7_0_135 |
||
accellion secure file transfer appliance 7_0_178 |