Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-48507 | A vulnerability was found in Edimax IC-6220DC and IC-5150W up to 3.06. It has been rated as critical. Affected by this issue is the function cgiFormString of the file ipcam_cgi. The manipulation of the argument host leads to command injection. NOTE: The vendor was contacted early about this disclosure but did not respond in any way. |
Tue, 13 Aug 2024 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Edimax
Edimax ic-5150w Edimax ic-5150w Firmware Edimax ic-6220dc Edimax ic-6220dc Firmware |
|
| CPEs | cpe:2.3:h:edimax:ic-5150w:-:*:*:*:*:*:*:* cpe:2.3:h:edimax:ic-6220dc:-:*:*:*:*:*:*:* cpe:2.3:o:edimax:ic-5150w_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:edimax:ic-6220dc_firmware:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Edimax
Edimax ic-5150w Edimax ic-5150w Firmware Edimax ic-6220dc Edimax ic-6220dc Firmware |
Fri, 09 Aug 2024 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 08 Aug 2024 23:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in Edimax IC-6220DC and IC-5150W up to 3.06. It has been rated as critical. Affected by this issue is the function cgiFormString of the file ipcam_cgi. The manipulation of the argument host leads to command injection. NOTE: The vendor was contacted early about this disclosure but did not respond in any way. | |
| Title | Edimax IC-6220DC/IC-5150W ipcam_cgi cgiFormString command injection | |
| Weaknesses | CWE-77 | |
| References |
|
|
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2024-08-09T17:20:00.865Z
Reserved: 2024-08-08T14:36:13.737Z
Link: CVE-2024-7616
Updated: 2024-08-09T17:19:22.291Z
Status : Analyzed
Published: 2024-08-12T13:38:45.120
Modified: 2024-08-13T16:59:39.517
Link: CVE-2024-7616
No data.
OpenCVE Enrichment
No data.
EUVD