Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-04975
HistoryDec 28, 2021 - 12:00 a.m.

Lantronix PremierWave 2050 OS Command Injection Vulnerability (CNVD-2022-04975)

2021-12-2800:00:00
China National Vulnerability Database
www.cnvd.org.cn
9
lantronix premierwave 2050
embedded wi-fi module
operating system command injection
vulnerability
arbitrary command execution
http request.

EPSS

0.001

Percentile

42.8%

The Lantronix PremierWave 2050 is an embedded Wi-Fi module manufactured by Lantronix. The Lantronix PremierWave 2050 is vulnerable to an operating system command injection vulnerability that could be exploited by an attacker to cause arbitrary command execution in the “EC keypasswd” parameter with a specially crafted HTTP request. " parameter to execute arbitrary commands.

EPSS

0.001

Percentile

42.8%