cve/2024/CVE-2024-44466.md
2025-09-29 21:09:30 +02:00

777 B

CVE-2024-44466

Description

COMFAST CF-XR11 V2.7.2 has a command injection vulnerability in function sub_424CB4. Attackers can send POST request messages to /usr/bin/webmgnt and inject commands into parameter iface.

POC

Reference

Github