CVE-2024-50960: Extron Sme 211 Firmware
High severity, CVSS 7.2. EPSS: 2.4% chance of exploitation in the next 30 days.
A command injection vulnerability in the Nmap diagnostic tool in the admin web console of Extron SMP 111 <=3.01, SMP 351 <=2.16, SMP 352 <= 2.16, and SME 211 <= 3.02, allows a remote authenticated attacker to execute arbitrary commands as root on the underlying operating system.
Affected products
- Extron Sme 211 Firmware: up to and including 3.02
- Extron Smp 111 Firmware: up to and including 3.01
- Extron Smp 351 Firmware: up to and including 2.16
- Extron Smp 352 Firmware: up to and including 2.16
Published 2025-04-15. Last modified 2026-06-17.