VYPR
Medium severity6.5NVD Advisory· Published Aug 27, 2018· Updated Jun 17, 2026

CVE-2018-15698

CVE-2018-15698

Description

ASUSTOR Data Master 3.1.5 and below allows authenticated remote non-administrative users to read any file on the file system when providing the full path to loginimage.cgi.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:o:asustor:data_master:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:asustor:data_master:*:*:*:*:*:*:*:*range: <=3.1.5
    • (no CPE)range: <=3.1.5
  • Tenable/ASUSTOR Data Masterv5
    Range: 3.1.5 and below

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.