CVE-2020-23584
23.11.2022, 02:15
Unauthenticated remote code execution in OPTILINK OP-XT71000N, Hardware Version: V2.2 occurs when the attacker passes arbitrary commands with IP-ADDRESS using " | " to execute commands on " /diag_tracert_admin.asp " in the "PingTest" parameter that leads to command execution.
Vendor | Product | Version |
---|---|---|
optilinknetwork | op-xt71000n_firmware | 3.3.1-191028 |
𝑥
= Vulnerable software versions