← Back to browse · API

CVE-2024-5411

Severity
HIGH
CVSS
8.7
EPSS
0.234
Risk score
42.99
CISA KEV
No
PoC
No
Published
2024-05-28
Modified
2025-10-08
First seen
2026-08-07
Aliases
EUVD-2024-46633
Products
ORing:IAP-420 0 ≤2.01e
Sources
euvd EUVD-2024-46633

Description

Missing input validation and OS command integration of the input in the ORing IAP-420 web-interface allows authenticated command injection.This issue affects IAP-420 version 2.01e and below.

References