Command Injection Vulnerability in OpenWrt LuCI Web Application

Command Injection Vulnerability in OpenWrt LuCI Web Application

CVE-2019-12272 · HIGH Severity

AV:N/AC:L/AU:N/C:P/I:P/A:P

In OpenWrt LuCI through 0.10, the endpoints admin/status/realtime/bandwidth_status and admin/status/realtime/wireless_status of the web application are affected by a command injection vulnerability.

Learn more about our Web App Pen Testing.