mirror of
https://github.com/0xMarcio/cve.git
synced 2025-11-30 18:56:19 +00:00
21 lines
1.0 KiB
Markdown
21 lines
1.0 KiB
Markdown
### [CVE-2024-9166](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-9166)
|
|

|
|

|
|
&color=brightgreen)
|
|
|
|
### Description
|
|
|
|
The device enables an unauthorized attacker to execute system commands with elevated privileges. This exploit is facilitated through the use of the 'getcommand' query within the application, allowing the attacker to gain root access.
|
|
|
|
### POC
|
|
|
|
#### Reference
|
|
- https://www.cisa.gov/news-events/ics-advisories/icsa-24-270-03
|
|
|
|
#### Github
|
|
- https://github.com/ANG13T/aerospace-cve-list
|
|
- https://github.com/Andrysqui/CVE-2024-9166
|
|
- https://github.com/fkie-cad/nvd-json-data-feeds
|
|
- https://github.com/nomi-sec/PoC-in-GitHub
|
|
|