Datto ALTO and SIRIS devices allow Remote Code Execution via unauthenticated requests to PHP scripts.
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2081
Reference (s):
- http://www.information-paradox.net/2015/02/cve-2015-2081-multiple-vulnerabilities.html

