CVE-2022-44149
06.01.2023, 17:15
The web service on Nexxt Amp300 ARN02304U8 42.103.1.5095 and 80.103.2.5045 devices allows remote OS command execution by placing &telnetd in the JSON host field to the ping feature of the goform/sysTools component. Authentication is required
Vendor | Product | Version |
---|---|---|
nexxtsolutions | amp300_firmware | 42.103.1.5095 |
nexxtsolutions | amp300_firmware | 80.103.2.5045 |
𝑥
= Vulnerable software versions
References