CVE-2024-44678

Gigastone TR1 Travel Router R101 v1.0.2 is vulnerable to Command Injection. This allows an authenticated attacker to execute arbitrary commands on the device by sending a crafted HTTP request to the ssid parameter in the request.
Configurations

No configuration.

History

26 Sep 2024, 14:35

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.0
CWE CWE-78

26 Sep 2024, 13:32

Type Values Removed Values Added
Summary
  • (es) Gigastone TR1 Travel Router R101 v1.0.2 es vulnerable a la inyección de comandos. Esto permite que un atacante autenticado ejecute comandos arbitrarios en el dispositivo mediante el envío de una solicitud HTTP manipulada al parámetro ssid de la solicitud.

25 Sep 2024, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-09-25 17:15

Updated : 2024-09-26 14:35


NVD link : CVE-2024-44678

Mitre link : CVE-2024-44678

CVE.ORG link : CVE-2024-44678


JSON object : View

Products Affected

No product.

CWE
CWE-78

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')