Логотип exploitDog
bind:CVE-2019-12324
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-12324

Количество 2

Количество 2

nvd логотип

CVE-2019-12324

больше 6 лет назад

A command injection (missing input validation) issue in the IP address field for the logging server in the configuration web interface on the Akuvox R50P VoIP phone with firmware 50.0.6.156 allows an authenticated remote attacker in the same network to trigger OS commands via shell metacharacters in a POST request.

CVSS3: 7.2
EPSS: Средний
github логотип

GHSA-fvrw-43j5-v43w

больше 3 лет назад

A command injection (missing input validation) issue in the IP address field for the logging server in the configuration web interface on the Akuvox R50P VoIP phone with firmware 50.0.6.156 allows an authenticated remote attacker in the same network to trigger OS commands via shell metacharacters in a POST request.

EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2019-12324

A command injection (missing input validation) issue in the IP address field for the logging server in the configuration web interface on the Akuvox R50P VoIP phone with firmware 50.0.6.156 allows an authenticated remote attacker in the same network to trigger OS commands via shell metacharacters in a POST request.

CVSS3: 7.2
14%
Средний
больше 6 лет назад
github логотип
GHSA-fvrw-43j5-v43w

A command injection (missing input validation) issue in the IP address field for the logging server in the configuration web interface on the Akuvox R50P VoIP phone with firmware 50.0.6.156 allows an authenticated remote attacker in the same network to trigger OS commands via shell metacharacters in a POST request.

14%
Средний
больше 3 лет назад

Уязвимостей на страницу