Loading
Static code injection vulnerability in the administrative web interface in Accellion Secure File Transfer Appliance allows remote authenticated administrators to inject arbitrary shell commands by appending them to a request to update the SNMP public community string.
Use CWE-94, Accellion vendor hub and Secure File Transfer Appliance product page to widen CVE-2009-4646 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2009-4644, CVE-2009-4645 and CVE-2008-7012 for nearby disclosures in the same product family.