CVE-2024-3785

Vulnerability in WBSAirback 21.02.04, which involves improper neutralisation of Server-Side Includes (SSI), through Device NAS shared section (/admin/DeviceNAS). Exploitation of this vulnerability could allow a remote user to execute arbitrary code.
Configurations

No configuration.

History

31 Oct 2024, 14:35

Type Values Removed Values Added
CWE CWE-94

15 Apr 2024, 19:12

Type Values Removed Values Added
Summary
  • (es) Vulnerabilidad en WBSAirback 21.02.04, que implica la neutralización inadecuada de Server-Side Includes (SSI), a través de la sección compartida del dispositivo NAS (/admin/DeviceNAS). La explotación de esta vulnerabilidad podría permitir que un usuario remoto ejecute código arbitrario.

15 Apr 2024, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-04-15 14:15

Updated : 2024-10-31 14:35


NVD link : CVE-2024-3785

Mitre link : CVE-2024-3785

CVE.ORG link : CVE-2024-3785


JSON object : View

Products Affected

No product.

CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')