A command injection vulnerability exists in /goform...
High severity
Unreviewed
Published
Apr 5, 2024
to the GitHub Advisory Database
•
Updated Aug 19, 2024
Description
Published by the National Vulnerability Database
Apr 5, 2024
Published to the GitHub Advisory Database
Apr 5, 2024
Last updated
Aug 19, 2024
A command injection vulnerability exists in /goform/exeCommand in Tenda AC18 v15.03.05.05, which allows attackers to construct cmdinput parameters for arbitrary command execution.
References