ZeroHour

CVE-2023-3741

CVSS 3.1
9.8 critical
EPSS
1%p72
Published
()
Modified
Description

An OS Command injection vulnerability in NEC Platforms DT900 and DT900S Series all versions allows an attacker to execute any command on the device.

Vendors
nec
Products
itk-6dgs-1\(bk\)tel firmware, itk-32lcgs-1\(bk\)tel firmware, itk-32tcgs-1\(bk\)tel firmware, itk-6d-1\(bk\)tel firmware, itk-12d-1\(bk\)tel firmware, itk-8lcx-1\(bk\)tel firmware, itk-8tcgx-1\(bk\)tel firmware, itk-6dgs-1a\(bk\)tel firmware, itk-32lcgs-1a\(bk\)tel firmware, itk-32tcgs-1a\(bk\)tel firmware, itk-6dgs-1p\(bk\)tel firmware, itk-32lcgs-1p\(bk\)tel firmware
Weakness
CWE-78
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.