Логотип exploitDog
bind:CVE-2019-12328
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-12328

Количество 2

Количество 2

nvd логотип

CVE-2019-12328

больше 6 лет назад

A command injection (missing input validation) issue in the remote phonebook configuration URI in the web interface of the Atcom A10W VoIP phone with firmware 2.6.1a2421 allows an authenticated remote attacker in the same network to trigger OS commands via shell metacharacters in a POST request.

CVSS3: 9
EPSS: Низкий
github логотип

GHSA-hrcx-g752-fgp2

больше 3 лет назад

A command injection (missing input validation) issue in the remote phonebook configuration URI in the web interface of the Atcom A10W VoIP phone with firmware 2.6.1a2421 allows an authenticated remote attacker in the same network to trigger OS commands via shell metacharacters in a POST request.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2019-12328

A command injection (missing input validation) issue in the remote phonebook configuration URI in the web interface of the Atcom A10W VoIP phone with firmware 2.6.1a2421 allows an authenticated remote attacker in the same network to trigger OS commands via shell metacharacters in a POST request.

CVSS3: 9
6%
Низкий
больше 6 лет назад
github логотип
GHSA-hrcx-g752-fgp2

A command injection (missing input validation) issue in the remote phonebook configuration URI in the web interface of the Atcom A10W VoIP phone with firmware 2.6.1a2421 allows an authenticated remote attacker in the same network to trigger OS commands via shell metacharacters in a POST request.

6%
Низкий
больше 3 лет назад

Уязвимостей на страницу