PT-2017-13396 · Extreme · Exos
Publicado
2017-10-23
·
Atualizado
2019-10-03
·
CVE-2017-14331
CVSS v2.0
7.2
Alta
| Vetor | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Extreme EXOS versions 16.x through 22.x
Description
The issue allows administrators to bypass the "exsh restricted shell" protection mechanism, resulting in the ability to obtain an interactive shell.
Recommendations
For versions 16.x through 22.x, consider restricting access to the shell until a patch is available.
As a temporary workaround, limit the use of administrative privileges to minimize the risk of exploitation.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Exos