Command Injection on the Monitoring Appliances

Name: Mutiny Monitoring Appliance Vendor: Mutiny Virtual Appliance: Download Page Vulnerability: Command Injection Affected Versions: Versions before 6.1.0-5263 CVE ID: CVE-2018-15529 This post will cover an authenticated command injection vulnerability that I discovered on a monitoring appliance.  For this example, I have a Mutiny virtual appliance running at the IP address 10.10.10.10 in Virtual Box. The … Continue reading Command Injection on the Monitoring Appliances