Security Advisory

CVE-2022-40969

8.8
HIGH

Vulnerability Description

An os command injection vulnerability exists in the httpd delfile.cgi functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted HTTP request can lead to arbitrary command execution. An attacker can send an HTTP request to trigger this vulnerability.
Published Date January 26, 2023
Official Source NIST NVD Advisory