ZeroHour

CVE-2018-5553

CVSS 3.0
9.8 critical
EPSS
2%p84
Published
()
Modified
Description

The Crestron Console service running on DGE-100, DM-DGE-200-C, and TS-1542-C devices with default configuration and running firmware versions 1.3384.00049.001 and lower are vulnerable to command injection that can be used to gain root-level access.

Vendors
crestron
Products
dge-100 firmware, dm-dge-200-c firmware, ts-1542-c firmware
Weakness
CWE-78
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.