CVE-2024-29269

An issue discovered in Telesquare TLR-2005Ksh 1.0.0 and 1.1.4 allows attackers to run arbitrary system commands via the Cmd parameter.
References
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:telesquare:tlr-2005ksh_firmware:1.0.0:*:*:*:*:*:*:*
cpe:2.3:o:telesquare:tlr-2005ksh_firmware:1.1.4:*:*:*:*:*:*:*
cpe:2.3:h:telesquare:tlr-2005ksh:-:*:*:*:*:*:*:*

History

17 Jun 2025, 17:06

Type Values Removed Values Added
References () https://github.com/wutalent/CVE-2024-29269/blob/main/index.md - () https://github.com/wutalent/CVE-2024-29269/blob/main/index.md - Exploit, Third Party Advisory
First Time Telesquare tlr-2005ksh Firmware
Telesquare
Telesquare tlr-2005ksh
CPE cpe:2.3:o:telesquare:tlr-2005ksh_firmware:1.1.4:*:*:*:*:*:*:*
cpe:2.3:o:telesquare:tlr-2005ksh_firmware:1.0.0:*:*:*:*:*:*:*
cpe:2.3:h:telesquare:tlr-2005ksh:-:*:*:*:*:*:*:*

21 Nov 2024, 09:07

Type Values Removed Values Added
References () https://github.com/wutalent/CVE-2024-29269/blob/main/index.md - () https://github.com/wutalent/CVE-2024-29269/blob/main/index.md -

27 Aug 2024, 18:35

Type Values Removed Values Added
Summary
  • (es) Un problema descubierto en Telesquare TLR-2005Ksh 1.0.0 y 1.1.4 permite a los atacantes ejecutar comandos arbitrarios del sistema a través del parámetro Cmd.
CWE CWE-77
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.8

10 Apr 2024, 20:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-04-10 20:15

Updated : 2025-06-17 17:06


NVD link : CVE-2024-29269

Mitre link : CVE-2024-29269

CVE.ORG link : CVE-2024-29269


JSON object : View

Products Affected

telesquare

  • tlr-2005ksh_firmware
  • tlr-2005ksh
CWE
CWE-77

Improper Neutralization of Special Elements used in a Command ('Command Injection')