Vulnerabilities > UI > Edgeswitch

DATE CVE VULNERABILITY TITLE RISK
2020-02-07 CVE-2020-8126 OS Command Injection vulnerability in UI Edgeswitch
A privilege escalation in the EdgeSwitch prior to version 1.7.1, an CGI script don't fully sanitize the user input resulting in local commands execution, allowing an operator user (Privilege-1) to escalate privileges and became administrator (Privilege-15).
local
low complexity
ui CWE-78
7.8