Vulnerabilities > Mitrastar > GPT 2541Gnac N1 Firmware

DATE CVE VULNERABILITY TITLE RISK
2022-05-03 CVE-2021-42165 OS Command Injection vulnerability in Mitrastar Gpt-2541Gnac-N1 Firmware Brg3.5100Vnz0B33
MitraStar GPT-2541GNAC-N1 (HGU) 100VNZ0b33 devices allow remote authenticated users to obtain root access by executing command "deviceinfo show file &&/bin/bash" because of incorrect sanitization of parameter "path".
network
low complexity
mitrastar CWE-78
critical
9.0