Feb. 23, 2023, 11:15 p.m. |

National Vulnerability Database web.nvd.nist.gov

Korenix Jetwave 4200 Series 1.3.0 and JetWave 3000 Series 1.6.0 are vulnerable to Command Injection via /goform/formSysCmd. An attacker an modify the sysCmd parameter in order to execute commands as root.

command command injection cve injection korenix order parameter root series vulnerable

Information Security Engineers

@ D. E. Shaw Research | New York City

Technology Security Analyst

@ Halton Region | Oakville, Ontario, Canada

Senior Cyber Security Analyst

@ Valley Water | San Jose, CA

Senior Director, Risk Compliance & Trust (GRC)

@ Snyk | Boston, London

Working Student (f/m/d) - Security Architecture Project Management & Communications

@ SAP | Walldorf, DE, 69190

Werkstudent Cyber Security (w/m/x)

@ BMW Group | München, DE