Vulnerabilities > Crestron > DGE 100 Firmware

DATE CVE VULNERABILITY TITLE RISK
2018-07-10 CVE-2018-5553 OS Command Injection vulnerability in Crestron products
The Crestron Console service running on DGE-100, DM-DGE-200-C, and TS-1542-C devices with default configuration and running firmware versions 1.3384.00049.001 and lower are vulnerable to command injection that can be used to gain root-level access.
network
low complexity
crestron CWE-78
critical
10.0