CVE-2019-18184

Severity CVSS v4.0:
Pending analysis
Type:
CWE-78 OS Command Injections
Publication date:
27/11/2019
Last modified:
10/02/2022

Description

Crestron DMC-STRO 1.0 devices allow remote command execution as root via shell metacharacters to the ping function.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:crestron:dmc-stro_firmware:1.0:*:*:*:*:*:*:*
cpe:2.3:h:crestron:dmc-stro:-:*:*:*:*:*:*:*