CVE-2018-15529: Mutiny
High severity, CVSS 8.8. EPSS: 4.8% chance of exploitation in the next 30 days.
A command injection vulnerability in maintenance.cgi in Mutiny "Monitoring Appliance" before 6.1.0-5263 allows authenticated users, with access to the admin interface, to inject arbitrary commands within the filename of a system upgrade upload.
Affected products
- Mutiny Mutiny: before 6.1.0-5263 (fixed in 6.1.0-5263)
Published 2018-08-28. Last modified 2026-06-17.