CVE-2009-4646
9.0
Vector
AV:N/AC:L/Au:S/C:C/I:C/A:C
Exploitability: 8.0 / Impact: 10.0
Source: NVD
Description
Static code injection vulnerability in the administrative web interface in Accellion Secure File Transfer Appliance allows remote authenticated administrators to inject arbitrary shell commands by appending them to a request to update the SNMP public community string.
Affected (1)
Products: Accellion: Secure File Transfer Appliance
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
References (4)
Timeline
No history available yet.