Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-v354-qw54-4f78

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in HTTP interface of ADT LifeShield DIY HD Video Doorbell allows an attacker on the same network to execute commands on the device. This issue affects: ADT LifeShield DIY HD Video Doorbell version 1.0.02R09 and prior versions.

Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in HTTP interface of ADT LifeShield DIY HD Video Doorbell allows an attacker on the same network to execute commands on the device. This issue affects: ADT LifeShield DIY HD Video Doorbell version 1.0.02R09 and prior versions.

EPSS

Процентиль: 67%
0.00547
Низкий

Дефекты

CWE-77

Связанные уязвимости

CVSS3: 6.9
nvd
около 5 лет назад

Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in HTTP interface of ADT LifeShield DIY HD Video Doorbell allows an attacker on the same network to execute commands on the device. This issue affects: ADT LifeShield DIY HD Video Doorbell version 1.0.02R09 and prior versions.

EPSS

Процентиль: 67%
0.00547
Низкий

Дефекты

CWE-77