CVE-2014-7994
24.12.2014, 00:59
Cisco-Meraki MS, MR, and MX devices with firmware before 2014-09-24 allow remote attackers to execute arbitrary commands by leveraging knowledge of a cross-device secret and a per-device secret, and sending a request to an unspecified HTTP handler on the local network, aka Cisco-Meraki defect ID 00301991.Enginsight
Vendor | Product | Version |
---|---|---|
cisco | meraki_mr_firmware | 𝑥 ≤ 2014-09-24 |
cisco | meraki_mr | - |
cisco | meraki_mx_firmware | 𝑥 ≤ 2014-09-24 |
cisco | meraki_mx | - |
cisco | meraki_ms_firmware | 𝑥 ≤ 2014-09-24 |
cisco | meraki_ms | - |
𝑥
= Vulnerable software versions
Common Weakness Enumeration