Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Sam Wong

Researcher fromXanthus Security, Inc.
#22533of 53,632
10Total CVSS
Vulnerabilities · 1
PT-2020-15722
10
2020-11-10
A10 Networks · A10 Networks Acos · CVE-2020-24384
**Name of the Vulnerable Software and Affected Versions** A10 Networks ACOS versions 3.2.x (including and after 3.2.2), 4.x, and 5.1.x aGalaxy versions 3.0.x, 3.2.x, and 5.0.x **Description** A10 Networks ACOS and aGalaxy management Graphical User Interfaces (GUIs) have an unauthenticated Remote Code Execution (RCE) vulnerability that could be used to compromise affected ACOS systems. **Recommendations** For A10 Networks ACOS versions 3.2.x (including and after 3.2.2), 4.x, and 5.1.x, update to a version that includes the fix for this issue. For aGalaxy versions 3.0.x, 3.2.x, and 5.0.x, update to a version that includes the fix for this issue. As a temporary workaround, consider restricting access to the management GUIs until a patch is available.