CVE Database
/

CVE-2016-5640

Back to search

CVE-2016-5640

Published: Aug 3, 2016

Modified: Aug 6, 2024

PUBLISHED

Description

Directory traversal vulnerability in cgi-bin/rftest.cgi on Crestron AirMedia AM-100 devices with firmware before 1.4.0.13 allows remote attackers to execute arbitrary commands via a .. (dot dot) in the ATE_COMMAND parameter.

VendorProductVersions

n/a

n/a

affected
n/a

References

92216
vdb-entry
x_refsource_BID
VU#603047
third-party-advisory
x_refsource_CERT-VN

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now