CVE-2022-1360
CWE-78: IMPROPER NEUTRALIZATION OF SPECIAL ELEMENTS USED IN AN OS COMMAND ('OS COMMAND INJECTION')
The affected On-Premise cnMaestro is vulnerable to execution of code on the cnMaestro hosting server. This could allow a remote attacker to change server configuration settings.
Risk Information
- CVE ID
- CVE-2022-1360
- Vendor
- Cambium Networks
- Product
- cnMaestro
- CVSS v3
- 8.2