CVE Published: 27/08/2018 |
CVE Updated: 16/09/2024 |
CVE Year: 2018 Source: tenable |
Vendor: Tenable |
Product: ASUSTOR Data Master Status : PUBLISHED
CVE-2018-15697 Description
ASUSTOR Data Master 3.1.5 and below allows authenticated remote non-administrative users to read any file on a share by providing the full path. For example, /home/admin/.ash_history.