CVE-2024-10118

SECOM WRTR-304GN-304TW-UPSC does not properly filter user input in the specific functionality. Unauthenticated remote attackers can exploit this vulnerability to inject and execute arbitrary system commands on the device.
Configurations

No configuration.

History

15 Apr 2026, 00:35

Type Values Removed Values Added
Summary
  • (es) SECOM WRTR-304GN-304TW-UPSC no filtra correctamente la entrada del usuario en la función específica. Atacantes remotos no autenticados pueden aprovechar esta vulnerabilidad para inyectar y ejecutar comandos arbitrarios del sistema en el dispositivo.

18 Oct 2024, 04:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-10-18 04:15

Updated : 2026-04-15 00:35


NVD link : CVE-2024-10118

Mitre link : CVE-2024-10118

CVE.ORG link : CVE-2024-10118


JSON object : View

Products Affected

No product.

CWE
CWE-78

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')