Vulnerabilities > Meinbergglobal > Lantime M300 Firmware

DATE CVE VULNERABILITY TITLE RISK
2020-01-20 CVE-2020-7240 OS Command Injection vulnerability in Meinbergglobal Lantime M1000 Firmware and Lantime M300 Firmware
Meinberg Lantime M300 and M1000 devices allow attackers (with privileges to configure a device) to execute arbitrary OS commands by editing the /config/netconf.cmd script (aka Extended Network Configuration).
network
low complexity
meinbergglobal CWE-78
8.8