CVE-2022-34850

Publication date

2022-10-25 16:34:00

Family

talos

State

PUBLISHED

Description

An OS command injection vulnerability exists in the web_server /action/import_authorized_keys/ functionality of Robustel R1510 3.1.16 and 3.3.0. A specially-crafted network request can lead to arbitrary command execution. An attacker can send a sequence of requests to trigger this vulnerability.