CVE-2018-14706

CVE-2018-14706

Published · Updated

8Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackepss 17%
exploitation probability
17%top 3% of all CVEs
observed exploitation
nono source reports it
System command injection in the /DroboPix/api/drobopix/demo endpoint on Drobo 5N2 NAS version 4.0.5-13.28.96115 allows unauthenticated attackers to execute system commands via the payload in a POST request.
Affected products
n/a · n/a