In IBOS 4.5.4 Open, Arbitrary File Inclusion causes getshell via /system/modules/dashboard/controllers/CronController.php.
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-21786
Reference (s):
- https://gitee.com/ibos/IBOS/issues/I18JRG
In IBOS 4.5.4 Open, Arbitrary File Inclusion causes getshell via /system/modules/dashboard/controllers/CronController.php.
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-21786
Reference (s):