CVE-2024-54007
Last modified
CVE-2024-54007 is a high-severity vulnerability rated 7.2/10 on the CVSS scale. Multiple command injection vulnerabilities exist in the web interface of the 501 Wireless Client Bridge which could lead to authenticated remote command execution. Successful exploitation of these vulnerabilities result in the ability of an attacker to execute arbitrary commands as a privileged user on the underlying operating system. EPSS estimates a 1.55% chance of exploitation in the next 30 days.
Description
Multiple command injection vulnerabilities exist in the web interface of the 501 Wireless Client Bridge which could lead to authenticated remote command execution. Successful exploitation of these vulnerabilities result in the ability of an attacker to execute arbitrary commands as a privileged user on the underlying operating system. Exploitation requires administrative authentication credentials on the host system.
Metrics
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2024-54007?
How severe is CVE-2024-54007?
How do I fix CVE-2024-54007?
Are you affected by CVE-2024-54007?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
