CVE-2016-2332

Severity CVSS v4.0:
Pending analysis
Type:
CWE-77 Command Injection
Publication date:
25/04/2016
Last modified:
12/04/2025

Description

flu.cgi in the web interface on SysLINK SL-1000 Machine-to-Machine (M2M) Modular Gateway devices with firmware before 01A.8 allows remote authenticated users to execute arbitrary commands via the 5066 (aka dnsmasq) parameter.

Vulnerable products and versions

CPE From Up to
cpe:2.3:h:systech:syslink_sl-1000_modular_gateway:-:*:*:*:*:*:*:*
cpe:2.3:o:systech:syslink_sl-1000_modular_gateway_firmware:-:*:*:*:*:*:*:*