Show filters
3 Total Results
Displaying 1-3 of 3
Sort by:
Attacker Value
Unknown
CVE-2021-38611
Disclosure Date: August 24, 2021 (last updated February 23, 2025)
A command-injection vulnerability in the Image Upload function of the NASCENT RemKon Device Manager 4.0.0.0 allows attackers to execute arbitrary commands, as root, via shell metacharacters in the filename parameter to assets/index.php.
0
Attacker Value
Unknown
CVE-2021-38613
Disclosure Date: August 24, 2021 (last updated February 23, 2025)
The assets/index.php Image Upload feature of the NASCENT RemKon Device Manager 4.0.0.0 allows attackers to upload any code to the target system and achieve remote code execution.
0
Attacker Value
Unknown
CVE-2021-38612
Disclosure Date: August 24, 2021 (last updated February 23, 2025)
In NASCENT RemKon Device Manager 4.0.0.0, a Directory Traversal vulnerability in a log-reading function in maintenance/readLog.php allows an attacker to read any file via a specialized URL.
0