ZeroHour

CVE-2021-44124

PoC ×2
CVSS 3.1
7.5 high
EPSS
2%p78
Published
()
Modified
Description

Hiby Music Hiby OS R3 Pro 1.5 and 1.6 is vulnerable to Directory Traversal. The HTTP Server does not have enough input data sanitization when shown data from SD Card, an attacker can navigate through the device's File System over HTTP.

Vendors
hiby
Products
r3 pro firmware
Weakness
CWE-22
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.