CVE-2022-30308

CVE-2022-30308

In Festo Controller CECC-X-M1 product family in multiple versions, the http-endpoint "cecc-x-web-viewer-request-on" POST request doesn’t check for port syntax. This can result in unauthorized execution of system commands with root privileges due to improper access control command injection.

Source: CVE-2022-30308

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다