VYPR
High severity7.2OSV Advisory· Published Oct 16, 2018· Updated Jun 17, 2026

CVE-2018-14772

CVE-2018-14772

Description

Pydio 4.2.1 through 8.2.1 has an authenticated remote code execution vulnerability in which an attacker with administrator access to the web application can execute arbitrary code on the underlying system via Command Injection.

Affected products

3
  • Pydio/Pydio2 versions
    cpe:2.3:a:pydio:pydio:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:pydio:pydio:*:*:*:*:*:*:*:*range: >=4.2.1,<=8.2.1
    • (no CPE)range: 4.2.1 - 8.2.1

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.