QuickBox Community Edition up to and including 2.5.5 and Pro Edition up to and including 2.1.8 allows an authenticated remote malicious user to execute code on the server via command injection in the servicestart parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
quickbox quickbox |