CVE-2012-2924

HIGH
CVSS v3
7.5CVSS v2
2.15% EPSS (exploit probability)
CWE-94CWE

Description

PHP remote file inclusion vulnerability in admin/setup.inc.php in Hypermethod eLearning Server 4G allows remote attackers to execute arbitrary PHP code via a URL in the path parameter.

Affected routers (1)

VendorModelMatched viaAffected versionsFixed inPatch Status
Ubiquiti Ubiquiti EdgeRouter 4 Unpatched

External references