AVM Fritz!Box allows remote attackers to execute arbitrary commands via shell metacharacters in the var:lang parameter to cgi-bin/webcm.
References
Configurations
History
No history.
Information
Published : 2015-05-29 15:59
Updated : 2025-04-12 10:46
NVD link : CVE-2014-9727
Mitre link : CVE-2014-9727
CVE.ORG link : CVE-2014-9727
JSON object : View
Products Affected
avm
- fritz\!box
CWE
CWE-78
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')