Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pjqh-q2j4-8c7q

Опубликовано: 24 фев. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 8.4

Описание

An improper input validation vulnerability was discovered in the NTP server configuration field of the Network-M2 card. This could result in an authenticated high privileged user having the ability to execute arbitrary commands. The vulnerability has been resolved in the version 3.0.4. Note - Network-M2 has been declared end-of-life in early 2024 and Network-M3 has been released as a fit-and-functional replacement.

An improper input validation vulnerability was discovered in the NTP server configuration field of the Network-M2 card. This could result in an authenticated high privileged user having the ability to execute arbitrary commands. The vulnerability has been resolved in the version 3.0.4. Note - Network-M2 has been declared end-of-life in early 2024 and Network-M3 has been released as a fit-and-functional replacement.

EPSS

Процентиль: 40%
0.00182
Низкий

8.4 High

CVSS3

Дефекты

CWE-20
CWE-78

Связанные уязвимости

CVSS3: 8.4
nvd
12 месяцев назад

An improper input validation vulnerability was discovered in the NTP server configuration field of the Network-M2 card. This could result in an authenticated high privileged user having the ability to execute arbitrary commands. The vulnerability has been resolved in the version 3.0.4. Note - Network-M2 has been declared end-of-life in early 2024 and Network-M3 has been released as a fit-and-functional replacement.

EPSS

Процентиль: 40%
0.00182
Низкий

8.4 High

CVSS3

Дефекты

CWE-20
CWE-78