๐ CVE-2022-33204 | Abode iota All-In-One Security Kit 6.9X/6.9Z HTTP Request /action/wirelessConnect ssid_hex os command injection (TALOS-2022-1568)
๐ก Newskategorie: Sicherheitslรผcken
๐ Quelle: vuldb.com
A vulnerability, which was classified as critical, was found in Abode iota All-In-One Security Kit 6.9X/6.9Z. This affects an unknown part of the file /action/wirelessConnect of the component HTTP Request Handler. The manipulation of the argument ssid_hex leads to os command injection. This vulnerability is uniquely identified as CVE-2022-33204. It is possible to initiate the attack remotely. There is no exploit available. ...