First published: Fri Aug 24 2018(Updated: )
An issue was discovered on PLANEX CS-W50HD devices with firmware before 030720. The device has a command-injection vulnerability in the web management UI on NAS settings page "/cgi-bin/nasset.cgi". An attacker can send a crafted HTTP POST request to execute arbitrary code. Authentication is required before executing the attack.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Planex Cs-w50hd Firmware | <030720 | |
PLANEX CS-W50HD |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.