CVE-2015-7698 | icewind1991 SMB up to 1.0.2 Server.php/Share.php listShares/connect/read user os command injection (ID 124212 / SBV-54711)
A vulnerability was found in icewind1991 SMB up to 1.0.2. It has been declared as critical. This vulnerability affects the function listShares/connect/read of the file Server.php/Share.php. The manipulation of the argument user leads to os command injection.
This vulnerability was named CVE-2015-7698. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.