mirror of
https://github.com/0xMarcio/cve.git
synced 2025-11-28 18:48:49 +00:00
19 lines
859 B
Markdown
19 lines
859 B
Markdown
### [CVE-2024-5411](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-5411)
|
|

|
|

|
|
&color=brighgreen)
|
|
|
|
### Description
|
|
|
|
Missing input validation and OS command integration of the input in the ORing IAP-420 web-interface allows authenticated command injection.This issue affects IAP-420 version 2.01e and below.
|
|
|
|
### POC
|
|
|
|
#### Reference
|
|
- http://seclists.org/fulldisclosure/2024/May/36
|
|
- https://cyberdanube.com/en/en-multiple-vulnerabilities-in-oring-iap420/
|
|
|
|
#### Github
|
|
No PoCs found on GitHub currently.
|
|
|