CVE-2018-11510

The ASUSTOR ADM 3.1.0.RFQ3 NAS portal suffers from an unauthenticated remote code execution vulnerability in the portal/apis/aggrecate_js.cgi file by embedding OS commands in the ‘script’ parameter.

Date published : 2018-06-28

https://www.exploit-db.com/exploits/45200/

https://www.exploit-db.com/exploits/45212/