Security Advisory

CVE-2024-3659

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-08-08 12:24:46
Last updated 2025-11-17 16:15:49
Assigner CERT-PL
State PUBLISHED

Description

Firmware in KAON AR2140 routers, prior to versions 3.2.50 and 4.2.16, is vulnerable to a shell command injection via sending a crafted request to one of the endpoints. In order to exploit this vulnerability, one has to have access to the administrative portal of the router.