Security Advisory

CVE-2022-41763

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-09-05 00:00:00
Last updated 2024-08-03 12:49:43
Assigner mitre
State PUBLISHED

Description

An issue was discovered in NOKIA AMS 9.7.05. Remote Code Execution exists via the debugger of the ipAddress variable. A remote user, authenticated to the AMS server, could inject code in the PING function. The privileges of the command executed depend on the user that runs the service.