CVE-2024-31976: Engeniustech EWS356-Fir Firmware
High severity, CVSS 8.0. EPSS: 1% chance of exploitation in the next 30 days.
EnGenius EWS356-FIR 1.1.30 and earlier devices allow a remote attacker to execute arbitrary OS commands via the Controller connectivity parameter.
Affected products
- Engeniustech EWS356-Fir Firmware: up to and including 1.1.30
Published 2024-11-27. Last modified 2026-06-17.