Remote Command Injection Vulnerability in Arris VAP2500
CVE-2024-5195

Currently unrated

Key Information:

Vendor

Arris

Vendor
CVE Published:
22 May 2024

What is CVE-2024-5195?

A critical command injection vulnerability has been identified in the Arris VAP2500 device, specifically affecting the /diag_s.php file. This vulnerability allows an attacker to manipulate the 'customer_info' argument, leading to potentially severe security breaches. The command injection can be executed remotely, making it especially dangerous. With the public disclosure of this exploit, it is crucial for users and organizations employing the Arris VAP2500 product to take immediate action to secure their systems against potential exploits.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

Timeline

  • Vulnerability published

.