In Festo Controller CECC-X-M1... CVE-2022-30311

10.0 AV AC AU C I A
发布: 2022-06-13
修订: 2024-11-21

In Festo Controller CECC-X-M1 product family in multiple versions, the http-endpoint "cecc-x-refresh-request" POST request doesn’t check for port syntax. This can result in unauthorized execution of system commands with root privileges due to improper access control command injection.

0%
暂无可用Exp或PoC
当前有19条受影响产品信息