CVE Vulnerabilities

CVE-2022-34869

Published: Sep 08, 2022 | Modified: Sep 13, 2022
CVSS 3.x
8.8
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Undocumented hidden command that can be executed from the telnet function of CentreCOM AR260S V2 firmware versions prior to Ver.3.3.7 allows a remote authenticated attacker to execute an arbitrary OS command.

Affected Software

Name Vendor Start Version End Version
Centrecom_ar260s_firmware Allied-telesis * 3.3.7 (excluding)

References