CVE-2024-33793: OS Command Injection
Published May 3, 2024
·Updated
netis-systems MEX605 v2.00.06 allows attackers to execute arbitrary OS commands via a crafted payload to the ping test page.
Affected Software
3 affected components
Netis Systems MEX605
All of the following
netis-systems Mex605 Firmware=2.00.06
netis-systems MEX605
Event History
May 3, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-33793?
CVE-2024-33793 is classified as a critical vulnerability due to its potential for arbitrary command execution.
2
How do I fix CVE-2024-33793?
To fix CVE-2024-33793, update the Netis Systems MEX605 firmware to the latest version that addresses this vulnerability.
3
What systems are affected by CVE-2024-33793?
CVE-2024-33793 affects Netis Systems MEX605 running firmware version 2.00.06.
4
What type of attack is facilitated by CVE-2024-33793?
CVE-2024-33793 allows attackers to execute arbitrary OS commands through a crafted payload on the ping test page.
5
Are there any mitigations for CVE-2024-33793?
While the best mitigation for CVE-2024-33793 is firmware updates, also consider restricting access to the ping test page.