THREATINT

We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Zendesk (Helpdesk and Chat)

Ok

PUBLISHED

CVE-2024-5403

ASKEY 5G NR Small Cell - Command Injection

Reserved:2024-05-27
Published:2024-05-27
Updated:2024-06-06

Description

ASKEY 5G NR Small Cell fails to properly filter user input for certain functionality, allowing remote attackers with administrator privilege to execute arbitrary system commands on the remote server.



HIGH: 7.2CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Problem types

CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

Product status

Default status
unaffected

nsc 2.1 V6
affected

References

https://www.twcert.org.tw/tw/cp-132-7821-87e38-1.html third-party-advisory

cve.org CVE-2024-5403

nvd.nist.gov CVE-2024-5403

Download JSON

Share this page
https://cve.threatint.com/CVE/CVE-2024-5403