Command Injection Vulnerability in Weintek cMT-3072XH2 Product
CVE-2024-55026
8.8HIGH
What is CVE-2024-55026?
A command injection vulnerability exists in the reset_pj.cgi endpoint of the Weintek cMT-3072XH2 easyweb, allowing attackers to execute arbitrary commands by sending a specially crafted GET request. This flaw could lead to unauthorized access and control over the device, posing significant risks to the integrity and security of applications running on this platform.
