Malware Devil

Wednesday, December 23, 2020

CVE-2020-35370 (raysync)

A RCE vulnerability exists in Raysync below 3.3.3.8. An unauthenticated unauthorized attacker sending a specifically crafted request to override the specific file in server with malicious content can login as “admin”, then to modify specific shell file to achieve remote code execution(RCE) on the hosting server.
Read More

The post CVE-2020-35370 (raysync) appeared first on Malware Devil.



https://malwaredevil.com/2020/12/23/cve-2020-35370-raysync/?utm_source=rss&utm_medium=rss&utm_campaign=cve-2020-35370-raysync

No comments:

Post a Comment

Barbary Pirates and Russian Cybercrime

In 1801, the United States had a small Navy. Thomas Jefferson deployed almost half that Navy—three frigates and a schooner—to the Barbary C...