CVE-2017-11366
components/filemanager/class.filemanager.php in Codiad before 2.8.4 is vulnerable to remote command execution because shell commands can be embedded in parameter values, as demonstrated by search_file_type.
- Affected products
- Codiad
- Codiad
- ≤ 2.8.3
- Fix
- Available
- CVSS 3.0
- 9.8 CRITICAL
- EPSS
- 7.5% (94th percentile)
- Weakness
- CWE-78
- NVD status
- Modified
- Published
- 2017-08-21
CVE-2017-11366 at NVD
3 known exploits for CVE-2017-11366
Proof-of-concept code and exploit modules indexed by Sploitus