First published: Sun Nov 24 2024(Updated: )
Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in hardy-barth cph2_echarge_firmware allows OS Command Injection.This issue affects cph2_echarge_firmware: through 2.0.4.
Credit: research@onekey.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Echarge Salia Plcc | <=2.0.4 | |
Echarge Salia Plcc Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-11665 has a critical severity rating due to its potential for OS command injection.
To fix CVE-2024-11665, update the cph2_echarge_firmware to version 2.0.5 or later.
CVE-2024-11665 affects the cph2_echarge_firmware versions up to and including 2.0.4.
CVE-2024-11665 is classified as a Command Injection vulnerability.
Yes, CVE-2024-11665 can be exploited remotely, allowing attackers to execute arbitrary commands.