Ligowave Unity/Pro/Mimo/APC Arbitrary Command Injection
Vulnerability Description
A vulnerability in the web-based management interface of multiple Ligowave devices could allow an authenticated remote attacker to execute arbitrary commands with elevated privileges.This issue affects UNITY: through 6.95-2; PRO: through 6.95-1.Rt3883; MIMO: through 6.95-1.Rt2880; APC Propeller: through 2-5.95-4.Rt3352.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-4999
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Quentin Kaiser from ONEKEY Research Labs
Affected Vendor
Ligowave
View all reports →