{ "id": "CVE-2024-30891", "sourceIdentifier": "cve@mitre.org", "published": "2024-04-05T08:15:07.800", "lastModified": "2024-04-05T12:40:52.763", "vulnStatus": "Awaiting Analysis", "descriptions": [ { "lang": "en", "value": "A command injection vulnerability exists in /goform/exeCommand in Tenda AC18 v15.03.05.05, which allows attackers to construct cmdinput parameters for arbitrary command execution." }, { "lang": "es", "value": "Existe una vulnerabilidad de inyecci\u00f3n de comandos en /goform/exeCommand en Tenda AC18 v15.03.05.05, que permite a los atacantes construir par\u00e1metros cmdinput para la ejecuci\u00f3n de comandos arbitrarios." } ], "metrics": {}, "references": [ { "url": "https://github.com/Lantern-r/IoT-vuln/blob/main/Tenda/AC18/formexeCommand.md", "source": "cve@mitre.org" } ] }