CVE-2021-37911

The management interface of BenQ smart wireless conference projector does not properly control user's privilege. Attackers can access any system directory of this device through the interface and execute arbitrary commands if he enters the local subnetwork.
References
Link Resource
https://www.twcert.org.tw/tw/cp-132-5047-7ef35-1.html Third Party Advisory
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:benq:eh600_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:benq:eh600:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2021-08-30 15:15

Updated : 2024-02-28 18:28


NVD link : CVE-2021-37911

Mitre link : CVE-2021-37911

CVE.ORG link : CVE-2021-37911


JSON object : View

Products Affected

benq

  • eh600
  • eh600_firmware
CWE
CWE-269

Improper Privilege Management