CVE-2024-38944
CRITICALIntelight X-1L Traffic controller Maxtime <1.9.6 - RCE
Title source: llmDescription
An issue in Intelight X-1L Traffic controller Maxtime v.1.9.6 allows a remote attacker to execute arbitrary code via the /cgi-bin/generateForm.cgi?formID=142 component.
Exploits (1)
exploitdb
WRITEUP
by Andrew Lemon/Red Threat · textwebappsmultiple
https://www.exploit-db.com/exploits/52151
Scores
CVSS v3
9.8
EPSS
0.1004
EPSS Percentile
93.1%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Details
CWE
CWE-94
Status
published
Published
Jul 22, 2024
Tracked Since
Feb 18, 2026