CVE-2023-30400

Severity CVSS v4.0:
Pending analysis
Type:
CWE-77 Command Injection
Publication date:
07/06/2023
Last modified:
07/01/2025

Description

An issue was discovered in Anyka Microelectronics AK3918EV300 MCU v18. A command injection vulnerability in the network configuration script within the MCU's operating system allows attackers to perform arbitrary command execution via a crafted wifi SSID or password.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:anyka:ak3918ev300_firmware:18:*:*:*:*:*:*:*
cpe:2.3:h:anyka:ak3918ev300:-:*:*:*:*:*:*:*