Products
Linksys E1500
- v1.0.06.001
Source
cve@mitre.org
Tags
CVE-2024-42633 details
Published : Aug. 19, 2024, 4:15 p.m.
Last Modified : Aug. 19, 2024, 6:36 p.m.
Last Modified : Aug. 19, 2024, 6:36 p.m.
Description
A Command Injection vulnerability exists in the do_upgrade_post function of the httpd binary in Linksys E1500 v1.0.06.001. As a result, an authenticated attacker can execute OS commands with root privileges.
CVSS Score
1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10 |
---|
Weakness
Weakness | Name | Description |
---|
References
URL | Source |
---|---|
https://github.com/goldds96/Report/blob/main/Linksys/E1500/CI.md | cve@mitre.org |
This website uses the NVD API, but is not approved or certified by it.