CVE-2024-58314 | ATCOM 100M IP Phones 2.7 Web Configuration web_cgi_main.cgi cmd os command injection (Exploit 51742 / EDB-51742)
A vulnerability was found in ATCOM 100M IP Phones 2.7. It has been rated as critical. The affected element is an unknown function of the file web_cgi_main.cgi of the component Web Configuration Handler. The manipulation of the argument cmd leads to os command injection.
This vulnerability is uniquely identified as CVE-2024-58314. The attack is possible to be carried out remotely. Moreover, an exploit is present.