CVE-2024-42905

Severity CVSS v4.0:
Pending analysis
Type:
CWE-77 Command Injection
Publication date:
28/08/2024
Last modified:
29/08/2024

Description

Beijing Digital China Cloud Technology Co., Ltd. DCME-320 v.7.4.12.60 has a command execution vulnerability, which can be exploited to obtain device administrator privileges via the getVar function in the code/function/system/tool/ping.php file.