Files
cve/2010/CVE-2010-20059.md
2025-09-29 21:09:30 +02:00

897 B
Raw Permalink Blame History

CVE-2010-20059

Description

FreeNAS 0.7.2 prior to revision 5543 includes an unauthenticated commandexecution backdoor in its web interface. The exec_raw.php script exposes a cmd parameter that is passed directly to the underlying shell without sanitation.

POC

Reference

Github

No PoCs found on GitHub currently.