TROYANOSYVIRUS
Back to CVEs

CVE-2013-3631

N/A

Description

NAS4Free 9.1.0.1.804 and earlier allows remote authenticated users to execute arbitrary PHP code via a request to exec.php, aka the "Advanced | Execute Command" feature. NOTE: this issue might not be a vulnerability, since it appears to be part of legitimate, intentionally-exposed functionality by the developer and is allowed within the intended security policy.

CVE Details

CVSS v3.1 ScoreN/A
Published11/2/2013
Last Modified4/29/2026
Sourcenvd
Honeypot Sightings0

Affected Products

nas4free:nas4free

Weaknesses (CWE)

CWE-94

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.