Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-30220


Command injection vulnerability in PLANEX COMMUNICATIONS wireless LAN routers allows a network-adjacent unauthenticated attacker to execute an arbitrary command by sending a specially crafted request to a certain port. Note that MZK-MF300N is no longer supported, therefore the update for this product is not provided.


Published

2024-04-15T11:15:08.697

Last Modified

2025-06-30T14:22:06.540

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 8.8 (HIGH)

Weaknesses
  • Type: Primary
    CWE-77
  • Type: Secondary
    CWE-78

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System planex mzk-mf300n_firmware * Yes
Hardware planex mzk-mf300n - No
Operating System planex mzk-mf300hp2_firmware ≤ 1.18 Yes
Hardware planex mzk-mf300hp2 - No

References