A vulnerability classified as critical was found in cym1102 nginxWebUI up to 3.9.9. This vulnerability affects unknown code of the file /adminPage/main/upload. The manipulation of the argument file leads to os command injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-260578 is the identifier assigned to this vulnerability.
Metrics
Affected Vendors & Products
References
History
Thu, 21 Aug 2025 01:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Cym1102
Cym1102 nginxwebui |
|
CPEs | cpe:2.3:a:cym1102:nginxwebui:*:*:*:*:*:*:*:* | |
Vendors & Products |
Cym1102
Cym1102 nginxwebui |

Status: PUBLISHED
Assigner: VulDB
Published: 2024-04-13T18:31:05.295Z
Updated: 2024-08-01T20:20:01.086Z
Reserved: 2024-04-12T19:33:37.905Z
Link: CVE-2024-3739

Updated: 2024-08-01T20:20:01.086Z

Status : Analyzed
Published: 2024-04-13T19:15:53.757
Modified: 2025-08-21T00:51:15.967
Link: CVE-2024-3739

No data.