Command Injection Vulnerability in Moxa AWK-3121 Devices
CVE-2018-10702
8.8HIGH
What is CVE-2018-10702?
A vulnerability in Moxa AWK-3121 devices running version 1.14 allows attackers to execute arbitrary commands on the device due to improper handling of the POST parameter 'iw_filename'. This exploitation leverages the device's script execution functionality, potentially leading to unauthorized access and control over the device.