Description
The default console presented to users over telnet (when enabled) is restricted to a subset of commands. Commands issued at this console, however, appear to be fed directly into a system call or other similar function. This allows any authenticated user to execute arbitrary commands on the device.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-49985 | The default console presented to users over telnet (when enabled) is restricted to a subset of commands. Commands issued at this console, however, appear to be fed directly into a system call or other similar function. This allows any authenticated user to execute arbitrary commands on the device. |
References
| Link | Providers |
|---|---|
| https://www.tenable.com/security/research/tra-2022-37 |
|
History
Thu, 17 Apr 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: tenable
Published:
Updated: 2025-04-17T19:03:54.393Z
Reserved: 2022-12-12T00:00:00.000Z
Link: CVE-2022-47210
Updated: 2024-08-03T14:47:29.412Z
Status : Modified
Published: 2022-12-16T20:15:09.003
Modified: 2025-04-17T19:15:54.927
Link: CVE-2022-47210
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD