CVE-2019-3929

⚠ KEVEPSS 94.3%

Crestron Multiple Products Command Injection Vulnerability

加入 CISA KEV 日:2022/4/15

描述

Multiple Crestron products are vulnerable to command injection via the file_transfer.cgi HTTP endpoint. A remote, unauthenticated attacker can use this vulnerability to execute operating system commands as root.

受影響套件(0)

OSV 沒有提供套件對應。