First published: Thu Jan 25 2024(Updated: )
A command injection vulnerability exists in the ‘SaveSysLogParams’ parameter of the Motorola MR2600. A remote attacker can exploit this vulnerability to achieve command execution. Authentication is required, however can be bypassed.
Credit: disclosures@exodusintel.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Motorola MR2600 | ||
Motorola MR2600 Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-23626 is classified as a high severity command injection vulnerability.
To fix CVE-2024-23626, update the Motorola MR2600 firmware to the latest version that patches this vulnerability.
CVE-2024-23626 affects the Motorola MR2600 router running specific versions of its firmware.
Yes, CVE-2024-23626 can be exploited by remote attackers, as authentication can be bypassed.
CVE-2024-23626 is associated with command injection attacks that can lead to remote command execution.