CVE-2020-10221: rConfig OS Command Injection Vulnerability
rConfig lib/ajaxHandlers/ajaxAddTemplate.php contains an OS command injection vulnerability that allows remote attackers to execute OS commands via shell metacharacters in the fileName POST parameter. Required action: Apply updates per vendor instructions.
CISA KEV ↗ · unattributed attribution · 1 IOC