CVE-2024-50960: Extron Sme 211 Firmware

High severity, CVSS 7.2. EPSS: 2.4% chance of exploitation in the next 30 days.

A command injection vulnerability in the Nmap diagnostic tool in the admin web console of Extron SMP 111 <=3.01, SMP 351 <=2.16, SMP 352 <= 2.16, and SME 211 <= 3.02, allows a remote authenticated attacker to execute arbitrary commands as root on the underlying operating system.

Affected products

  • Extron Sme 211 Firmware: up to and including 3.02
  • Extron Smp 111 Firmware: up to and including 3.01
  • Extron Smp 351 Firmware: up to and including 2.16
  • Extron Smp 352 Firmware: up to and including 2.16

Published 2025-04-15. Last modified 2026-06-17.