CVE-2023-41029
CVSS V2 None
CVSS V3 None
Description
Command injection vulnerability in the homemng.htm endpoint in Juplink RX4-1500 Wifi router firmware versions V1.0.2, V1.0.3, V1.0.4, and V1.0.5 allows authenticated remote attackers to execute commands as root via specially crafted HTTP requests to the vulnerable endpoint.
Overview
- CVE ID
- CVE-2023-41029
- Assigner
- XI
- Vulnerability Status
- PUBLISHED
- Published Version
- 2023-09-22T16:07:12.826Z
- Last Modified Date
- 2023-09-22T16:07:12.826Z
Weakness Enumerations
References
Reference URL | Reference Tags |
---|---|
https://blog.exodusintel.com/2023/09/18/juplink-rx4-1500-command-injection-vulnerability/ |
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2023-41029 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-41029 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2024-06-25 03:49:03 | Added to TrackCVE |