An issue was discovered in Anyka Microelectronics AK3918EV300 MCU v18. A command injection vulnerability in the network configuration script within the MCU's operating system allows attackers to perform arbitrary command execution via a crafted wifi SSID or password.
References
Link Resource
https://arxiv.org/abs/2306.00610 Exploit Third Party Advisory
https://github.com/Nemobi/ak3918ev300v18 Product
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2023-06-07T00:00:00

Updated: 2023-06-07T00:00:00

Reserved: 2023-04-07T00:00:00


Link: CVE-2023-30400

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-06-07T01:15:39.143

Modified: 2023-06-21T14:49:43.397


Link: CVE-2023-30400

JSON object: View

cve-icon Redhat Information

No data.

CWE