Home
CRITICAL: 10.0 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:HDefault status
unaffected
<1.4.3.3 (custom)
affected
Default status
unaffected
<1.4.3.3 (custom)
affected
Description
Remote Code Execution vulnerability that allows unauthenticated attackers to inject arbitrary commands into the hostname of the device.
Product status
<1.4.3.3 (custom)
<1.4.3.3 (custom)
References
www.zenitel.com/.../A100K12333 Zenitel Security Advisory.pdf (Zenitel Security Advisory)