The config restore function of Voipmonitor GUI before v24.96 does not properly check files sent as restore archives, allowing remote malicious users to execute arbitrary commands via a crafted file in the web root.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
voipmonitor voipmonitor |