The vendor explicitly identifies these products as affected by this CVE.
- SENTRON 7KT PAC1260 Data Manager
- Summary
- The web interface of affected devices does not sanitize the language parameter in specific POST requests. This could allow an authenticated remote attacker to execute arbitrary code with root privileges.
- Remediation
- Currently no fix is planned
