CVE-2018-16117

A shell escape vulnerability in /webconsole/Controller in Admin Portal of Sophos XG firewall 17.0.8 MR-8 allow remote authenticated attackers to execute arbitrary OS commands via shell metacharacters in the "dbName" POST parameter.
Configurations

Configuration 1


Information

Published : 2019-06-20 05:15

Updated : 2020-07-13 06:10


NVD link : CVE-2018-16117

Mitre link : CVE-2018-16117

Products Affected
No products.
CWE