High severity7.2NVD Advisory· Published May 22, 2018· Updated Jun 17, 2026
CVE-2018-11340
CVE-2018-11340
Description
An unrestricted file upload vulnerability in importuser.cgi in ASUSTOR AS6202T ADM 3.1.0.RFQ3 allows attackers to upload supplied data to a specified filename. This can be used to place attacker controlled code on the file system that is then executed.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1Patches
Vulnerability mechanics
References
2- seclists.org/fulldisclosure/2018/May/2nvdExploitMailing ListThird Party Advisory
- www.purehacking.com/blog/matthew-fulton/back-to-the-future-asustor-web-exploitationnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.