VYPR
Medium severity4.3NVD Advisory· Published Aug 27, 2018· Updated Jun 17, 2026

CVE-2018-15696

CVE-2018-15696

Description

ASUSTOR Data Master 3.1.5 and below allows authenticated remote non-administrative users to enumerate all user accounts via user.cgi.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:o:asustor:data_master:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:asustor:data_master:*:*:*:*:*:*:*:*range: <=3.1.5
    • (no CPE)range: <=3.1.5
  • Tenable/ASUSTOR Data Masterv5
    Range: 3.1.5 and below

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.