myStrom WiFi Switch V1 devices prior to 2.66 did not sanitize a parameter received from the cloud that was used in an OS command. Malicious servers were able to run operating system commands on the device.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
mystrom wifi_switch_firmware |