Known Vulnerabilities for As602t by Asustor
Listed below are 10 of the newest known vulnerabilities associated with "As602t" by "Asustor".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2018-12319 json | Denial-of-service in the login page of ASUSTOR ADM 3.1.1 allows attackers to prevent users from signing in by placing malform... | 7.5 - HIGH | 2018-12-04 | 2019-10-03 |
| CVE-2018-12318 json | Information disclosure in the SNMP settings page in ASUSTOR ADM version 3.1.1 allows attackers to obtain the SNMP password in... | 8.8 - HIGH | 2018-12-04 | 2020-08-24 |
| CVE-2018-12316 json | OS Command Injection in upload.cgi in ASUSTOR ADM version 3.1.1 allows attackers to execute system commands by modifying the ... | 8.8 - HIGH | 2018-12-04 | 2018-12-21 |
| CVE-2018-12315 json | Missing verification of a password in ASUSTOR ADM version 3.1.1 allows attackers to change account passwords without entering... | 6.5 - MEDIUM | 2018-12-04 | 2019-10-03 |
| CVE-2018-12314 json | Directory Traversal in downloadwallpaper.cgi in ASUSTOR ADM version 3.1.1 allows attackers to download arbitrary files by man... | 7.5 - HIGH | 2018-12-04 | 2018-12-21 |
| CVE-2018-12313 json | OS command injection in snmp.cgi in ASUSTOR ADM version 3.1.1 allows attackers to execute system commands without authenticat... | 9.8 - CRITICAL | 2018-12-04 | 2019-10-03 |
| CVE-2018-12312 json | OS command injection in user.cgi in ASUSTOR ADM version 3.1.1 allows attackers to execute system commands as root via the "se... | 8.8 - HIGH | 2018-12-04 | 2018-12-20 |
| CVE-2018-12311 json | Cross-site scripting vulnerability in File Explorer in ASUSTOR ADM version 3.1.1 allows attackers to execute arbitrary JavaSc... | 5.4 - MEDIUM | 2018-12-04 | 2018-12-20 |
| CVE-2018-12310 json | Cross-site scripting in the Login page in ASUSTOR ADM version 3.1.1 allows attackers to execute JavaScript via the System Ann... | 5.4 - MEDIUM | 2018-12-04 | 2018-12-20 |
| CVE-2018-12309 json | Directory Traversal in upload.cgi in ASUSTOR ADM version 3.1.1 allows attackers to upload files to arbitrary locations by mod... | 7.5 - HIGH | 2018-12-04 | 2018-12-27 |