Command injection vulnerability in RaspAP raspap-webgui 2.8.8 and earlier allows remote attackers to run arbitrary commands via crafted POST request to hostapd settings form.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| billz/raspap-webgui(Packagist) | 0 | 2.8.9 | N/A |
CVSS Metrics