Generex CS141 through 2.10 allows remote command execution by administrators via a web interface that reaches run_update in /usr/bin/gxserve-update.sh (e.g., command execution can occur via a reverse shell installed by install.sh).
Advisories
Source ID Title
EUVD EUVD EUVD-2022-45530 Generex CS141 through 2.10 allows remote command execution by administrators via a web interface that reaches run_update in /usr/bin/gxserve-update.sh (e.g., command execution can occur via a reverse shell installed by install.sh).
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-03T13:10:40.910Z

Reserved: 2022-10-06T00:00:00

Link: CVE-2022-42457

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-10-06T18:18:25.340

Modified: 2024-11-21T07:24:59.960

Link: CVE-2022-42457

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses