CVE-2015-2842: Goautodial Goadmin CE

High severity, CVSS 10.0. EPSS: 13.1% chance of exploitation in the next 30 days.

Unrestricted file upload vulnerability in go_audiostore.php in the audiostore (Voice Files) upload functionality in GoAutoDial GoAdmin CE 3.x before 3.3-1421902800 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in sounds/.

Affected products

  • Goautodial Goadmin CE: version 3.0 only; version 3.3 only

Published 2015-05-12. Last modified 2026-06-17.