Remote Command Execution in GoPro HERO 3+ via gpExec

Remote Command Execution in GoPro HERO 3+ via gpExec

CVE-2014-6434 · HIGH Severity

AV:N/AC:L/AU:N/C:C/I:C/A:C

gpExec in GoPro HERO 3+ allows remote attackers to execute arbitrary commands via a the (1) a1 or (2) a2 parameter in a restart action.

Learn more about our Web Application Penetration Testing UK.