PT-2017-13396 · Extreme · Exos
Published
2017-10-23
·
Updated
2019-10-03
·
CVE-2017-14331
CVSS v2.0
7.2
High
| Vector | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Extreme EXOS versions 16.x through 22.x
Description
The issue allows administrators to bypass the "exsh restricted shell" protection mechanism, resulting in the ability to obtain an interactive shell.
Recommendations
For versions 16.x through 22.x, consider restricting access to the shell until a patch is available.
As a temporary workaround, limit the use of administrative privileges to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Exos