Description
Cypress Solutions CTM-200 2.7.1 contains an authenticated command injection vulnerability in the firmware upgrade script that allows remote attackers to execute shell commands. Attackers can exploit the 'fw_url' parameter in the ctm-config-upgrade.sh script to inject and execute arbitrary commands with root privileges.
Problem types
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
Product status
Credits
LiquidWorm as Gjoko Krstic of Zero Science Lab
References
www.exploit-db.com/exploits/50408 (ExploitDB-50408)
www.cypress.bc.ca (Cypress Solutions Product Homepage)
www.zeroscience.mk/en/vulnerabilities/ZSL-2021-5687.php (Zero Science Lab Disclosure (ZSL-2021-5687))
www.vulncheck.com/...-command-injection-via-firmware-upgrade (VulnCheck Advisory: Cypress Solutions CTM-200 2.7.1 Root Remote OS Command Injection via Firmware Upgrade)
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.