Three os command injection vulnerabilities exist in the boa formWsc functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted series of HTTP requests can lead to arbitrary command execution. An attacker can send a series of HTTP requests to trigger these vulnerabilities.This command injection is related to the `peerPin` request's parameter.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: talos

Published: 2024-07-08T15:22:23.599Z

Updated: 2024-08-02T22:16:46.867Z

Reserved: 2023-12-07T15:53:58.264Z

Link: CVE-2023-50382

cve-icon Vulnrichment

Updated: 2024-08-02T22:16:46.867Z

cve-icon NVD

Status : Analyzed

Published: 2024-07-08T16:15:07.093

Modified: 2024-07-11T16:05:58.387

Link: CVE-2023-50382

cve-icon Redhat

No data.