Security Advisory

CVE-2018-16334

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-09-02 03:00:00
Last updated 2024-08-05 10:24:32
Assigner mitre
State PUBLISHED

Description

An issue was discovered on Tenda AC9 V15.03.05.19(6318)_CN and AC10 V15.03.06.23_CN devices. The mac parameter in a POST request is used directly in a doSystemCmd call, causing OS command injection.