SECOM WRTR-304GN-304TW-UPSC does not properly filter user input in the specific functionality. Unauthenticated remote attackers can exploit this vulnerability to inject and execute arbitrary system commands on the device.
References
Configurations
No configuration.
History
18 Oct 2024, 04:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-10-18 04:15
Updated : 2024-10-18 12:52
NVD link : CVE-2024-10118
Mitre link : CVE-2024-10118
CVE.ORG link : CVE-2024-10118
JSON object : View
Products Affected
No product.
CWE
CWE-78
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')