duality084/CVE-2023-33381-MitraStar-GPT-2741GNAC

duality084/CVE-2023-33381-MitraStar-GPT-2741GNAC

Releases0
Stars13
CVE-2023-33381: OS command injection on MitraStar GPT-2741GNAC

CVE History

CVEPublishedCVSS v3CVSS v2
7.2 HIGH

A command injection vulnerability was found in the ping functionality of the MitraStar GPT-2741GNAC router (firmware version AR_g5.8_110WVN0b7_2). The vulnerability allows an authenticated user to execute arbitrary OS commands by sending specially crafted input to the router via the ping function.