A command injection vulnerability in the DHCP activation feature of Weintek cMT-3072XH2 easyweb Web Version v2.1.53, OS v20231011 allows attackers to execute arbitrary commands with root privileges.
References
| Link | Resource |
|---|---|
| https://gist.github.com/AenganZ/f86ed0da28825a1432ec697f484622de | Third Party Advisory |
| https://plain-trick-71d.notion.site/weintek-cMT-3072XH2-14687a89c4c181eeb21ad61e0392f34b?pvs=4 | Third Party Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
History
No history.
Information
Published : 2026-03-03 20:16
Updated : 2026-03-04 20:03
NVD link : CVE-2024-55020
Mitre link : CVE-2024-55020
CVE.ORG link : CVE-2024-55020
JSON object : View
Products Affected
weintek
- cmt-3072xh2_firmware
- easyweb
- cmt-3072xh2
