CVE-2023-50381: LEVEL1 Wbr-6013 Firmware
High severity, CVSS 7.2. EPSS: 3.2% chance of exploitation in the next 30 days.
Three os command injection vulnerabilities exist in the boa formWsc functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially crafted series of HTTP requests can lead to arbitrary command execution. An attacker can send a series of HTTP requests to trigger these vulnerabilities.This command injection is related to the `targetAPSsid` request's parameter.
Affected products
- LEVEL1 Wbr-6013 Firmware: version rer4_a_v3411b_2t2r_lev_09_170623 only
- Realtek RTL819X Jungle Software Development Kit: version 3.4.11 only
Published 2024-07-08. Last modified 2026-06-17.