Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-04974
HistoryDec 28, 2021 - 12:00 a.m.

Lantronix PremierWave 2050 OS Command Injection Vulnerability (CNVD-2022-04974)

2021-12-2800:00:00
China National Vulnerability Database
www.cnvd.org.cn
9
lantronix
premierwave 2050
os command injection
vulnerability
wi-fi module
web manager
fstftp
http request
arbitrary command execution

EPSS

0.001

Percentile

42.8%

The Lantronix PremierWave 2050 is an embedded Wi-Fi module manufactured by Lantronix.The Web Manager FsTFtp feature of the Lantronix PremierWave 2050 8.9.0.0R4 is vulnerable to an operating system command injection vulnerability that could be exploited by an attacker with a specially crafted HTTP request to cause arbitrary command execution in a “GET” request.

EPSS

0.001

Percentile

42.8%

Related for CNVD-2022-04974