cve/2019/CVE-2019-19117.md
2024-05-26 14:27:05 +02:00

670 B

CVE-2019-19117

Description

/usr/lib/lua/luci/controller/admin/autoupgrade.lua on PHICOMM K2(PSG1218) V22.5.9.163 devices allows remote authenticated users to execute any command via shell metacharacters in the cgi-bin/luci autoUpTime parameter.

POC

Reference

No PoCs from references.

Github