Crestron DMC-STRO 1.0 devices allow remote command execution as root via shell metacharacters to the ping function.
The product constructs all or part of an OS command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended OS command when it is sent to a downstream component.
Link | Tags |
---|---|
https://www.quantumleap.it/news/advisory/ | third party advisory |
https://www.crestron.com/en-US/Products/Video/DigitalMedia-Modular-Matrix/Output-Cards-Blades/DMC-STRO | product |
https://www.quantumleap.it/crestron-dmc-stro-remote-root-rce/ | third party advisory exploit |