Security Advisory

CVE-2020-10580

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2021-03-25 19:48:33
Last updated 2024-08-04 11:06:10
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

A command injection on the /admin/broadcast.php script of Invigo Automatic Device Management (ADM) through 5.0 allows remote authenticated attackers to execute arbitrary PHP code on the server as the user running the application.