CVE-2024-22544

An issue was discovered in Linksys Router E1700 version 1.0.04 (build 3), allows authenticated attackers to execute arbitrary code via the setDateTime function.
Configurations

No configuration.

History

21 Nov 2024, 08:56

Type Values Removed Values Added
References () https://mat4mee.notion.site/Remote-Code-Execution-RCE-on-the-Linksys-Router-E1700-765c9bbf6a7f4171b670bc778bf9b005 - () https://mat4mee.notion.site/Remote-Code-Execution-RCE-on-the-Linksys-Router-E1700-765c9bbf6a7f4171b670bc778bf9b005 -

01 Aug 2024, 13:46

Type Values Removed Values Added
CWE CWE-77
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.0

27 Feb 2024, 14:20

Type Values Removed Values Added
Summary
  • (es) Se descubrió un problema en Linksys Router E1700 versión 1.0.04 (compilación 3), que permite a atacantes autenticados ejecutar código arbitrario a través de la función setDateTime.

27 Feb 2024, 01:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-02-27 01:15

Updated : 2024-11-21 08:56


NVD link : CVE-2024-22544

Mitre link : CVE-2024-22544

CVE.ORG link : CVE-2024-22544


JSON object : View

Products Affected

No product.

CWE
CWE-77

Improper Neutralization of Special Elements used in a Command ('Command Injection')