RULE(RULE ID:338172)

Rule General Information
Release Date: 2024-06-25
Rule Name: Phicomm k2 Remote Command Execution Vulnerability (CVE-2023-40796)
Severity:
CVE ID:
Rule Protection Details
Description: Phicomm k2 v22.6.529.216 was discovered to contain a command injection vulnerability via the function luci.sys.call.
Impact: An attacker can execute arbitrary command via a successful exploit in the context of the vulnerable software.
Affected OS: Windows, Linux, Others
Reference: https://github.com/lst-oss/Vulnerability/tree/main/Phicomm/k2
Solutions
Please contact the software vendor to update the software patch.