The management interface of BenQ smart wireless conference projector does not properly control user's privilege. Attackers can access any system directory of this device through the interface and execute arbitrary commands if he enters the local subnetwork.
                
            Metrics
Affected Vendors & Products
Advisories
    | Source | ID | Title | 
|---|---|---|
  EUVD | 
                EUVD-2021-24389 | The management interface of BenQ smart wireless conference projector does not properly control user's privilege. Attackers can access any system directory of this device through the interface and execute arbitrary commands if he enters the local subnetwork. | 
Fixes
    Solution
Update EH600 OTA to v01.00.30.00 (AOSP 6.0)
Workaround
No workaround given by the vendor.
References
        | Link | Providers | 
|---|---|
| https://www.twcert.org.tw/tw/cp-132-5047-7ef35-1.html | 
                     | 
            
History
                    No history.
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2024-09-16T20:27:17.520Z
Reserved: 2021-08-02T00:00:00
Link: CVE-2021-37911
No data.
Status : Modified
Published: 2021-08-30T15:15:07.917
Modified: 2024-11-21T06:16:02.260
Link: CVE-2021-37911
No data.
                        OpenCVE Enrichment
                    No data.
 EUVD