The asset discovery scanner in AlienVault OSSIM prior to 5.0.1 allows remote authenticated users to execute arbitrary commands via the assets array parameter to netscan/do_scan.php.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
alienvault open source security information management |