Vulnerability CVE-2022-42492


Published: 2023-01-26

Description:
Several OS command injection vulnerabilities exist in the m2m binary of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network request can lead to arbitrary command execution. An attacker can send a network request to trigger these vulnerabilities.This command injection is reachable through the m2m's DOWNLOAD_AD command.

 References:
https://talosintelligence.com/vulnerability_reports/TALOS-2022-1640

Copyright 2026, cxsecurity.com

 

Back to Top