TROYANOSYVIRUS
Back to CVEs

CVE-2010-20059

N/A

Description

FreeNAS 0.7.2 prior to revision 5543 includes an unauthenticated command‐execution backdoor in its web interface. The exec_raw.php script exposes a cmd parameter that is passed directly to the underlying shell without sanitation.

CVE Details

CVSS v3.1 ScoreN/A
Published8/20/2025
Last Modified8/22/2025
Sourcenvd
Honeypot Sightings0

This product uses data from the NVD API but is not endorsed or certified by the NVD.