Critical severity9.8NVD Advisory· Published Mar 9, 2020· Updated Jun 17, 2026
CVE-2020-10250
CVE-2020-10250
Description
BWA DiREX-Pro 1.2181 devices allow remote attackers to execute arbitrary OS commands via shell metacharacters in the PKG parameter to uninstall.php3.
Affected products
3- cpe:2.3:o:meinbwa:direx-pro_firmware:1.2181:*:*:*:*:*:*:*
- BWA/DiREX-Prodescription
Patches
Vulnerability mechanics
References
1- sku11army.blogspot.com/2020/03/bwa-multiple-vulnerabilities-in-direx.htmlnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.