EnGenius EnShare IoT Gigabit Cloud...

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

### Summary With the EnGenius IoT Gigabit Routers and free EnShare app, use your iPhone, iPad or Android-based tablet or smartphone to transfer video, music and other files to and from a router-attached USB hard drive. Enshare is a USB media storage sharing application that enables access to files remotely. The EnShare feature allows you to access media content stored on a USB hard drive connected to the router's USB port in the home and when you are away from home when you have access to the Internet. By default the EnShare feature is enabled. ### Description EnGenius EnShare suffers from an unauthenticated command injection vulnerability. An attacker can inject and execute arbitrary code as the root user via the 'path' GET/POST parameter parsed by 'usbinteract.cgi' script. ### Vendor EnGenius Technologies Inc. - https://www.engeniustech.com ### Affected Version * ESR300 (1.4.9, 1.4.7, 1.4.2, 1.4.1.28, 1.4.0, 1.3.1.42, 1.1.0.28) * ESR350 (1.4.11, 1.4.9, 1.4.5, 1.4.2, 1.4.0,...

0%
暂无可用Exp或PoC
当前有0条受影响产品信息