Security Advisory

CVE-2023-36670

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-07-18 00:00:00
Last updated 2024-10-28 16:48:47
Assigner mitre
State PUBLISHED

Description

A remotely exploitable command injection vulnerability was found on the Kratos NGC-IDU 9.1.0.4. An attacker can execute arbitrary Linux commands as root by sending crafted TCP requests to the device.