PT-2024-14073 · Unknown · Tenghutos Tws-200

Published

2024-01-18

·

Updated

2024-01-26

·

CVE-2023-51217

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions TenghuTOS TWS-200 version V4.0-201809201424
Description An issue in TenghuTOS TWS-200 allows a remote attacker to execute arbitrary code via a crafted command on the "ping page component".
Recommendations For TenghuTOS TWS-200 version V4.0-201809201424, at the moment, there is no information about a newer version that contains a fix for this issue.

Exploit

Fix

OS Command Injection

Weakness Enumeration

Related Identifiers

CVE-2023-51217

Affected Products

Tenghutos Tws-200