CVE-2013-6881: Cru-Inc Ditto Forensic Fieldstation

High severity, CVSS 10.0. EPSS: 12.6% chance of exploitation in the next 30 days.

CRU Ditto Forensic FieldStation with firmware before 2013Oct15a allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) sector size or (2) skip count fields for the forensic imaging task.

Affected products

  • Cru-Inc Ditto Forensic Fieldstation
  • Cru-Inc Ditto Forensic Fieldstation Firmware: up to and including 2013jun30a

Published 2014-01-07. Last modified 2026-06-17.