CVE Published: 30/08/2021 |
CVE Updated: 16/09/2024 |
CVE Year: 2021 Source: twcert |
Vendor: BenQ |
Product: EH600 OTA Status : PUBLISHED
CVE-2021-37911 Description
The management interface of BenQ smart wireless conference projector does not properly control user\'s privilege. Attackers can access any system directory of this device through the interface and execute arbitrary commands if he enters the local subnetwork.
Metrics
CVSS Version: 3.1 |
Base Score: 8.8 HIGH Vector: CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H