9
CVSSv2

CVE-2014-8387

Published: 20/11/2014 Updated: 09/10/2018
CVSS v2 Base Score: 9 | Impact Score: 10 | Exploitability Score: 8
VMScore: 905
Vector: AV:N/AC:L/Au:S/C:C/I:C/A:C

Vulnerability Summary

cgi/utility.cgi in Advantech EKI-6340 2.05 Wi-Fi Mesh Access Point allows remote authenticated users to execute arbitrary commands via shell metacharacters in the pinghost parameter to ping.cgi.

Vulnerable Product Search on Vulmon Subscribe to Product

advantech eki-6340_firmware 2.05

advantech eki-6340 -

Exploits

Core Security - Corelabs Advisory corelabscoresecuritycom/ Advantech EKI-6340 Command Injection 1 *Advisory Information* Title: Advantech EKI-6340 Command Injection Advisory ID: CORE-2014-0009 Advisory URL: wwwcoresecuritycom/advisories/advantech-eki-6340-command-injection Date published: 2014-11-19 Date of last update: 2014- ...