Impacted Products VoIPmonitor < 2460 How to RCE python3 CVE-2021-30461py -t ip_address Browser shell: xxxx/namrlblgelphp?a=whoami Reference ssd-disclosurecom/ssd-advisory-voipmonitor-unauth-rce/
A remote code execution issue exists in the web UI of VoIPmonitor prior to 24.61. When the recheck option is used, the user-supplied SPOOLDIR value (which might contain PHP code) is injected into config/configuration.php.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
voipmonitor voipmonitor |