Command injection vulnerability in PLANEX COMMUNICATIONS wireless LAN routers allows a network-adjacent unauthenticated attacker to execute an arbitrary command by sending a specially crafted request to a certain port. Note that MZK-MF300N is no longer supported, therefore the update for this product is not provided.
2024-04-15T11:15:08.697
2025-06-30T14:22:06.540
Analyzed
CVSSv3.1: 8.8 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | planex | mzk-mf300n_firmware | * | Yes |
Hardware | planex | mzk-mf300n | - | No |
Operating System | planex | mzk-mf300hp2_firmware | ≤ 1.18 | Yes |
Hardware | planex | mzk-mf300hp2 | - | No |