CVE-2015-2844
HIGH 10.0EPSS 12.6%
The cpanel function in go_site.php in GoAutoDial GoAdmin CE before 3.3-1420434000 allows remote attackers to execute arbitrary commands via the $action portion of the PATH_INFO.
- CVSS v2.0
- 10.0 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C - EPSS
- 12.63% chance of exploitation in the next 30 days, 96th percentile
- Published
- 2015-05-12
- Updated
- 2024-08-06
Proof-of-concept exploits (2)
- CodeXTF2/goautodial-rce-exploit4★ · 2022-03-09
- TarunYenni/GoAutoDial-CE-3.3-Exploit-Authentication-Bypass-Command-Injection2★ · 2022-08-24