VYPR
Unrated severityNVD Advisory· Published Aug 15, 2023· Updated Oct 9, 2024

CVE-2023-38865

CVE-2023-38865

Description

COMFAST CF-XR11 V2.7.2 has a command injection vulnerability detected at function sub_4143F0. Attackers can send POST request messages to /usr/bin/webmgnt and inject commands into parameter timestr.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • Comfast/CF-XR11cpe-rescue2 versions
    (expand)+ 1 more
    • (no CPE)
    • (no CPE)range: = V2.7.2

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.