cve/2021/CVE-2021-21872.md
2024-05-25 21:48:12 +02:00

913 B

CVE-2021-21872

Description

An OS command injection vulnerability exists in the Web Manager Diagnostics: Traceroute functionality of Lantronix PremierWave 2050 8.9.0.0R4. A specially-crafted HTTP request can lead to arbitrary command execution. An attacker can make an authenticated HTTP request to trigger this vulnerability.

POC

Reference

Github

No PoCs found on GitHub currently.