CyberRota Analysis
AI-GeneratedThe vulnerability lies in the audit file upload handler, which fails to properly sanitize filenames, allowing shell metacharacters to be executed in system commands. This input validation flaw can lead to command injection attacks when combined with other related vulnerabilities. Organizations utilizing this affected upload handler should prioritize remediation to mitigate the risk of unauthorized command execution.
Original NVD Description
The audit file upload handler does not sanitize filenames, allowing shell metacharacters to flow into system command execution. This input validation failure enables command injection when chained with a related vulnerability.
Related CVEs
Other vulnerabilities affecting the same vendor(s)