ID | CVE-2019-11001 | ||||||
Sažetak | On Reolink RLC-410W, C1 Pro, C2 Pro, RLC-422W, and RLC-511W devices through 1.0.227, an authenticated admin can use the "TestEmail" functionality to inject and run OS commands as root, as demonstrated by shell metacharacters in the addr1 field. | ||||||
Reference | |||||||
CVSS |
|
||||||
Pristup |
|
||||||
Impact |
|
||||||
CVSS vektor | AV:N/AC:L/Au:S/C:C/I:C/A:C | ||||||
Zadnje važnije ažuriranje | 09-04-2019 - 14:11 | ||||||
Objavljeno | 08-04-2019 - 17:29 |