cve/2023/CVE-2023-36622.md
2024-06-18 02:51:15 +02:00

812 B

CVE-2023-36622

Description

The websocket configuration endpoint of the Loxone Miniserver Go Gen.2 before 14.1.5.9 allows remote authenticated administrators to inject arbitrary OS commands via the timezone parameter.

POC

Reference

Github

No PoCs found on GitHub currently.