CVE-2024-44413: Command Injection
A vulnerability was discovered in DI8200-16.07.26A1, which has been classified as critical. This issue affects the upgradefilterasp function in the upgradefilter.asp file. Manipulation of the path parameter can lead to command injection.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-44413?
CVE-2024-44413 has been classified as critical due to its potential for command injection.
How does CVE-2024-44413 affect the DI_8200?
CVE-2024-44413 affects the upgrade_filter_asp function in the upgrade_filter.asp file of DI_8200.
What can happen if CVE-2024-44413 is exploited?
Exploitation of CVE-2024-44413 can lead to unauthorized command injection through manipulation of the path parameter.
How do I fix CVE-2024-44413?
To fix CVE-2024-44413, it is recommended to update to the latest firmware version provided by the vendor.
Are there any known exposure conditions for CVE-2024-44413?
CVE-2024-44413 is typically exposed when the affected device is accessible over the network and not properly secured.