CVE-2023-38865
15.08.2023, 19:15
COMFAST CF-XR11 V2.7.2 has a command injection vulnerability detected at function sub_4143F0. Attackers can send POST request messages to /usr/bin/webmgnt and inject commands into parameter timestr.
Vendor | Product | Version |
---|---|---|
comfast | cf-xr11_firmware | 2.7.2 |
𝑥
= Vulnerable software versions