RULE(RULE ID:338203)

Rule General Information
Release Date: 2024-07-02
Rule Name: BYTEVALUE Router Remote Command Execution Vulnerability
Severity:
CVE ID:
Rule Protection Details
Description: BYTEVALUE router has a powerful multi-line distribution, multi-line overlay load balancing function, coupled with the leading intelligent flow control QOS technology to solve the Internet cafe, community and other public business places bandwidth problems. The BYTEVALUE router has a command injection vulnerability. The vulnerability is caused by the /goform/webRead/open interface not filtering user input effectively, and a malicious attacker can execute arbitrary commands through this vulnerability.
Impact: An attacker can execute arbitrary command via a successful exploit in the context of the vulnerable software.
Affected OS: Windows, Linux, Others
Reference:
Solutions
Please contact the software vendor to update the software patch.