Back

CRITICAL

OS Command Injection in Atelmo Atemio AM 520 HD Full HD Satellite Receiver

Published Sep 26, 2024

Description

The device enables an unauthorized attacker to execute system commands with elevated privileges. This exploit is facilitated through the use of the 'getcommand' query within the application, allowing the attacker to gain root access.

Affected products

Remediation

Vendor solution

Atelmo has stated that this product has been discontinued. There are no service or support addresses that can be contacted.

For more information, contact Atelmo https://www.atelmo.com/epages/Atelmo.sf/de_DE/ .

Metrics

References (1)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner icscert
Published Sep 26, 2024
Updated Sep 26, 2024
Reserved Sep 24, 2024
CISA Vulnrichment
Updated Sep 26, 2024
NVD
Status Deferred
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a