CVE-2024-9166 Information

Description

The device enables an unauthorized attacker to execute system commands with elevated privileges. This exploit is facilitated through the use of the ‘getcommand’ query within the application allowing the attacker to gain root access.

Reference

https://www.cisa.gov/news-events/ics-advisories/icsa-24-270-03

Share on: