Grandstream GWN7610 before 1.0.8.18... CVE-2019-10658

6.5 AV AC AU C I A
发布: 2019-03-30
修订: 2023-03-01

Grandstream GWN7610 before 1.0.8.18 devices allow remote authenticated users to execute arbitrary code via shell metacharacters in the filename in a /ubus/controller.icc.update_nds_webroot_from_tmp update_nds_webroot_from_tmp API call.

0%
暂无可用Exp或PoC
当前有2条受影响产品信息