Security Advisory

CVE-2020-10173

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-03-05 14:36:38
Last updated 2024-08-04 10:50:57
Assigner mitre
State PUBLISHED

Description

Comtrend VR-3033 DE11-416SSG-C01_R02.A2pvI042j1.d26m devices have Multiple Authenticated Command Injection vulnerabilities via the ping and traceroute diagnostic pages, as demonstrated by shell metacharacters in the pingIpAddress parameter to ping.cgi.