CVE Vulnerabilities

CVE-2014-4046

Published: Jun 17, 2014 | Modified: Oct 09, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.5 MEDIUM
AV:N/AC:L/Au:S/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Asterisk Open Source 11.x before 11.10.1 and 12.x before 12.3.1 and Certified Asterisk 11.6 before 11.6-cert3 allows remote authenticated Manager users to execute arbitrary shell commands via a MixMonitor action.

Affected Software

Name Vendor Start Version End Version
Asterisk Digium 11.0.0 (including) 11.0.0 (including)
Asterisk Digium 11.0.0-beta1 (including) 11.0.0-beta1 (including)
Asterisk Digium 11.0.0-beta2 (including) 11.0.0-beta2 (including)
Asterisk Digium 11.0.0-rc1 (including) 11.0.0-rc1 (including)
Asterisk Digium 11.0.0-rc2 (including) 11.0.0-rc2 (including)
Asterisk Digium 11.0.1 (including) 11.0.1 (including)
Asterisk Digium 11.0.2 (including) 11.0.2 (including)
Asterisk Digium 11.1.0 (including) 11.1.0 (including)
Asterisk Digium 11.1.0-rc1 (including) 11.1.0-rc1 (including)
Asterisk Digium 11.1.0-rc3 (including) 11.1.0-rc3 (including)
Asterisk Digium 11.1.1 (including) 11.1.1 (including)
Asterisk Digium 11.1.2 (including) 11.1.2 (including)
Asterisk Digium 11.2.0-rc1 (including) 11.2.0-rc1 (including)
Asterisk Digium 11.2.0-rc2 (including) 11.2.0-rc2 (including)
Asterisk Digium 11.3.0-rc1 (including) 11.3.0-rc1 (including)
Asterisk Digium 11.3.0-rc2 (including) 11.3.0-rc2 (including)
Asterisk Digium 11.4.0 (including) 11.4.0 (including)
Asterisk Digium 11.4.0-rc1 (including) 11.4.0-rc1 (including)
Asterisk Digium 11.4.0-rc2 (including) 11.4.0-rc2 (including)
Asterisk Digium 11.4.0-rc3 (including) 11.4.0-rc3 (including)
Asterisk Digium 11.5.0 (including) 11.5.0 (including)
Asterisk Digium 11.5.0-rc1 (including) 11.5.0-rc1 (including)
Asterisk Digium 11.5.0-rc2 (including) 11.5.0-rc2 (including)
Asterisk Digium 11.5.1 (including) 11.5.1 (including)
Asterisk Digium 11.8.0 (including) 11.8.0 (including)
Asterisk Digium 11.8.0-rc1 (including) 11.8.0-rc1 (including)
Asterisk Digium 11.8.0-rc2 (including) 11.8.0-rc2 (including)
Asterisk Digium 11.8.0-rc3 (including) 11.8.0-rc3 (including)
Asterisk Digium 11.8.1 (including) 11.8.1 (including)
Asterisk Digium 11.9.0 (including) 11.9.0 (including)
Asterisk Digium 11.9.0-rc1 (including) 11.9.0-rc1 (including)
Asterisk Digium 11.9.0-rc2 (including) 11.9.0-rc2 (including)
Asterisk Digium 11.10.0 (including) 11.10.0 (including)
Asterisk Digium 11.10.0-rc1 (including) 11.10.0-rc1 (including)

References