Disclosure summary
rConfig lib/ajaxHandlers/ajaxAddTemplate.php contains an OS command injection vulnerability that allows remote attackers to execute OS commands via shell metacharacters in the fileName POST parameter.
CISA remediation guidance
Apply updates per vendor instructions.
Original records & references
PUBLISHED 2021-11-03T00:00:00-04:00
MODIFIED 2021-11-03T00:00:00-04:00
INGESTED 2026-10-06T11:42:59-04:00