First published: Thu Nov 20 2014(Updated: )
cgi/utility.cgi in Advantech EKI-6340 2.05 Wi-Fi Mesh Access Point allows remote authenticated users to execute arbitrary commands via shell metacharacters in the pinghost parameter to ping.cgi.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Advantech Eki-6340 Firmware | =2.05 | |
Advantech EKI-6340 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-8387 is classified as a high-severity vulnerability due to its potential for remote command execution.
To fix CVE-2014-8387, upgrading the firmware of the Advantech EKI-6340 to a version that addresses the vulnerability is recommended.
Users of the Advantech EKI-6340 2.05 Wi-Fi Mesh Access Point are affected by CVE-2014-8387.
CVE-2014-8387 allows remote authenticated users to execute arbitrary commands through command injection using shell metacharacters.
CVE-2014-8387 was published in November 2014.