Description
An OS command injection vulnerability exists in AE1021PE firmware version 2.0.9 and earlier and AE1021 firmware version 2.0.9 and earlier. If this vulnerability is exploited, an arbitrary OS command may be executed by an attacker who can log in to the product.
Published: 2023-12-06
Score: 8.8 High
EPSS: 24.0% Moderate
KEV: Yes
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 21 Oct 2025 23:15:00 +0000


Tue, 21 Oct 2025 20:30:00 +0000


Tue, 21 Oct 2025 19:30:00 +0000


Mon, 03 Feb 2025 17:15:00 +0000

Type Values Removed Values Added
Metrics kev

{'dateAdded': '2023-12-21'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'active', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Subscriptions

Fxc Ae1021 Ae1021 Firmware Ae1021pe Ae1021pe Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: jpcert

Published:

Updated: 2025-10-21T23:05:29.972Z

Reserved: 2023-12-01T02:30:49.222Z

Link: CVE-2023-49897

cve-icon Vulnrichment

Updated: 2024-08-02T22:09:48.211Z

cve-icon NVD

Status : Analyzed

Published: 2023-12-06T07:15:41.883

Modified: 2025-10-24T17:01:03.800

Link: CVE-2023-49897

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses