Security Advisory

CVE-2018-11509

9.8
CRITICAL

Vulnerability Description

ASUSTOR ADM 3.1.0.RFQ3 uses the same default root:admin username and password as it does for the NAS itself for applications that are installed from the online repository. This may allow an attacker to login and upload a webshell.
Published Date August 16, 2018
Official Source NIST NVD Advisory