Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-41763

Опубликовано: 05 сент. 2023
Источник: nvd
CVSS3: 8.8
EPSS Низкий

Описание

An issue was discovered in NOKIA AMS 9.7.05. Remote Code Execution exists via the debugger of the ipAddress variable. A remote user, authenticated to the AMS server, could inject code in the PING function. The privileges of the command executed depend on the user that runs the service.

Ссылки

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:nokia:access_management_system:9.7.05:*:*:*:*:*:*:*

EPSS

Процентиль: 81%
0.01462
Низкий

8.8 High

CVSS3

Дефекты

CWE-94

Связанные уязвимости

CVSS3: 8.8
github
больше 2 лет назад

An issue was discovered in NOKIA AMS 9.7.05. Remote Code Execution exists via the debugger of the ipAddress variable. A remote user, authenticated to the AMS server, could inject code in the PING function. The privileges of the command executed depend on the user that runs the service.

EPSS

Процентиль: 81%
0.01462
Низкий

8.8 High

CVSS3

Дефекты

CWE-94