CVE-2024-44678
HIGHGigastone TR1 Travel Router R101 v1.0.2 - Command Injection
Title source: llmDescription
Gigastone TR1 Travel Router R101 v1.0.2 is vulnerable to Command Injection. This allows an authenticated attacker to execute arbitrary commands on the device by sending a crafted HTTP request to the ssid parameter in the request.
References (2)
Core 2
Core References
Various Sources
https://www.bridewell.com/insights/blogs/detail/cve-2024-44678-identified-vulnerability-in-gigastone-wi-fi-range-extenders
Various Sources
https://www.newegg.com/gigastone-tr1/p/0E6-008K-00004
Scores
CVSS v3
8.0
EPSS
0.0129
EPSS Percentile
66.5%
Attack Vector
ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
total
Details
CWE
CWE-78
Status
published
Published
Sep 25, 2024
Tracked Since
Feb 18, 2026