PT-2017-13396 · Extreme · Exos

Published

2017-10-23

·

Updated

2019-10-03

·

CVE-2017-14331

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Extreme EXOS versions 16.x through 22.x
Description The issue allows administrators to bypass the "exsh restricted shell" protection mechanism, resulting in the ability to obtain an interactive shell.
Recommendations For versions 16.x through 22.x, consider restricting access to the shell until a patch is available. As a temporary workaround, limit the use of administrative privileges to minimize the risk of exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2017-14331

Affected Products

Exos