The management interface of BenQ smart wireless conference projector does not properly control user's privilege. Attackers can access any system directory of this device through the interface and execute arbitrary commands if he enters the local subnetwork.
References
Link | Resource |
---|---|
https://www.twcert.org.tw/tw/cp-132-5047-7ef35-1.html | Third Party Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2021-08-30 08:15
Updated : 2021-09-10 08:31
NVD link : CVE-2021-37911
Mitre link : CVE-2021-37911
JSON object : View
CWE
CWE-269
Improper Privilege Management
Products Affected
benq
- eh600_firmware
- eh600