GHSA-rx4q-5jwm-r64wHighCVSS 9.8
Crestron DMC-STRO 1.0 devices allow remote command execution as root via shell metacharacters to...
🔗 CVE IDs covered (1)
📋 Description
Crestron DMC-STRO 1.0 devices allow remote command execution as root via shell metacharacters to the ping function.
🔗 References (7)
- https://nvd.nist.gov/vuln/detail/CVE-2019-18184
- https://www.crestron.com/en-US/Products/Video/DigitalMedia-Modular-Matrix/Output-Cards-Blades/DMC-STRO
- https://cyberleap.it/advisories/cve-2019-18184
- https://web.archive.org/web/20201221031912/https://www.quantumleap.it/crestron-dmc-stro-remote-root-rce
- https://www.quantumleap.it/crestron-dmc-stro-remote-root-rce
- https://www.quantumleap.it/news/advisory
- https://github.com/advisories/GHSA-rx4q-5jwm-r64w