PT-2024-20864 · Casa Systems · Casa Systems Nl1901Acv

Chris Watts

·

Published

2024-05-02

·

Updated

2024-08-01

·

CVE-2024-25290

CVSS v3.1

8.0

High

VectorAV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Casa Systems NL1901ACV version R6B032
Description An issue allows a remote attacker to execute arbitrary code via the userName parameter of the add function.
Recommendations For Casa Systems NL1901ACV version R6B032, avoid using the userName parameter in the affected function until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Weakness Enumeration

Related Identifiers

CVE-2024-25290

Affected Products

Casa Systems Nl1901Acv