iRZ.Wireless.Devices.API.crontab.Remote.Code.Execution
Description
This indicates an attack attempt against an Remote Code Execution vulnerability in iRZ Mobile Routers.
The vulnerability is caused by improper handling of a HTTP request. An authenticated remote attacker may be able to exploit this to execute arbitrary remote code within the context of the application, via a malicious HTTP request.
Affected Products
iRZ RU21
iRZ RU21w
iRZ RL21
iRZ RU41
iRZ RL01
Impact
System Compromise: Remote attackers can gain control of vulnerable systems.
Recommended Actions
Currently, we are not aware of any vendor supplied patch for this issue.
Telemetry
Coverage
IPS (Regular DB) | |
IPS (Extended DB) |
Version Updates
Date | Version | Detail |
---|---|---|
2024-07-23 | 28.831 | Name:iRZ. Mobile. Router. API. crontab. Remote. Code. Execution:iRZ. Wireless. Devices. API. crontab. Remote. Code. Execution |
2022-09-14 | 22.392 | Sig Added |
2022-04-14 | 20.298 | Default_action:pass:drop |
2022-04-06 | 20.292 |