HIGH
Dynacolor FCM-MB40 v1.2.0.0 devices allow remote attackers to execute arbitrary commands via a crafted parameter to a CGI script, as demonstrated by sed injection in cgi-bin/camctrl_save_profile.cgi (save parameter) and cgi-bin/ddns.cgi
Published Jul 8, 2019
7.2
HIGHCVSS 3.0
EPSS 4.15%
Description
Affected products
Remediation
References (1)
Change history (0)
No recorded changes yet.