Gl.Inet · Gl-Ar300M-Lite · CVE-2019-6272
**Name of the Vulnerable Software and Affected Versions**
GL.iNet GL-AR300M-Lite version 2.27
**Description**
A command injection issue in the login cgi of GL.iNet GL-AR300M-Lite devices allows remote attackers to execute arbitrary code.
**Recommendations**
For version 2.27, update the firmware to a version that addresses this issue.