Network Attached Storage on LG N1T1*** 10124 devices allows an unauthenticated malicious user to gain root access via OS command injection in the en/ajp/plugins/access.ssh/checkInstall.php destServer parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
lg n1t1_firmware - |