The management interface of BenQ smart wireless conference projector does not properly control user's privilege. Attackers can access any system directory of this device through the interface and execute arbitrary commands if he enters the local subnetwork.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-24389 | The management interface of BenQ smart wireless conference projector does not properly control user's privilege. Attackers can access any system directory of this device through the interface and execute arbitrary commands if he enters the local subnetwork. |
Fixes
Solution
Update EH600 OTA to v01.00.30.00 (AOSP 6.0)
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://www.twcert.org.tw/tw/cp-132-5047-7ef35-1.html |
|
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2024-09-16T20:27:17.520Z
Reserved: 2021-08-02T00:00:00
Link: CVE-2021-37911
No data.
Status : Modified
Published: 2021-08-30T15:15:07.917
Modified: 2024-11-21T06:16:02.260
Link: CVE-2021-37911
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD