Arbitrary Command Execution Vulnerability in Infiray IRAY-A8Z3 1.0.957

Arbitrary Command Execution Vulnerability in Infiray IRAY-A8Z3 1.0.957

CVE-2022-31208 · HIGH Severity

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

An issue was discovered in Infiray IRAY-A8Z3 1.0.957. The webserver contains an endpoint that can execute arbitrary commands by manipulating the cmd_string URL parameter.

Learn more about our Web App Pen Testing.