Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-01593
HistoryNov 22, 2021 - 12:00 a.m.

Lantronix PremierWave 2050 OS Command Injection Vulnerability (CNVD-2022-01593)

2021-11-2200:00:00
China National Vulnerability Database
www.cnvd.org.cn
8
lantronix
premierwave 2050
os command injection
vulnerability
system authentication
http requests

EPSS

0.002

Percentile

65.5%

The Lantronix PremierWave 2050 is an embedded enterprise Wi-Fi module from Lantronix, Inc. The Lantronix PremierWave 2050 version 8.9.0.0R4 is vulnerable to an OS command injection vulnerability caused by a problem with system authentication for HTTP requests. An attacker could exploit the vulnerability to cause arbitrary command execution.

EPSS

0.002

Percentile

65.5%