CVE Database
/

CVE-2018-6328

Back to search

CVE-2018-6328

Published: Mar 14, 2018

Modified: Aug 5, 2024

PUBLISHED

Description

It was discovered that the Unitrends Backup (UB) before 10.1.0 user interface was exposed to an authentication bypass, which then could allow an unauthenticated user to inject arbitrary commands into its /api/hosts parameters using backquotes.

VendorProductVersions

n/a

n/a

affected
n/a

References

45559
exploit
x_refsource_EXPLOIT-DB
44297
exploit
x_refsource_EXPLOIT-DB

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now