Maltrail - OS Command Injection
Last updated
Last updated
Maltrail is a malicious traffic detection system ,read more about it HERE
On February 24th, 2023, a researcher discovered and reported a vulnerability in Maltrail v0.54. This vulnerability exposes the system to unauthenticated OS command injection during the login process.
Maltrail main web page
The vulnerability exists in the 'username' parameter, which is susceptible to blind OS command injection.