CVE-2024-53688
CVE-2024-53688
Título es
CVE-2024-53688
Mié, 18/12/2024 – 07:15
Tipo
CWE-78
Gravedad 2.0 Txt
Pendiente de análisis
Título en
CVE-2024-53688
Descripción en
Improper neutralization of special elements used in an OS command ('OS Command Injection') issue exists in AE1021 firmware versions 2.0.10 and earlier and AE1021PE firmware versions 2.0.10 and earlier, which may allow a logged-in user to execute an arbitrary OS command using a crafted HTTP request.
18/12/2024
18/12/2024
Vector CVSS:3.1
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Gravedad 3.1 (CVSS 3.1 Base Score)
7.20
Gravedad 3.1 Txt Gravedad 3.1 (CVSS 3.1 Base Score)
HIGH
Enviar en el boletín
Off
