Lucene search

K
cveMitreCVE-2023-30638
HistoryApr 14, 2023 - 12:15 a.m.

CVE-2023-30638

2023-04-1400:15:18
CWE-77
mitre
web.nvd.nist.gov
22
cve-2023-30638
atos
unify
openscape sbc
openscape branch
openscape bcf
remote authenticated
command injection

CVSS3

7.2

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

HIGH

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

AI Score

6.7

Confidence

High

EPSS

0.002

Percentile

62.1%

Atos Unify OpenScape SBC 10 before 10R3.1.3, OpenScape Branch 10 before 10R3.1.2, and OpenScape BCF 10 before 10R10.7.0 allow remote authenticated admins to inject commands.

Affected configurations

Nvd
Node
atosunify_openscape_bcfRange1010r10.7.0
OR
atosunify_openscape_branchRange1010r3.1.2
OR
atosunify_openscape_session_border_controllerRange1010r3.1.3
VendorProductVersionCPE
atosunify_openscape_bcf*cpe:2.3:a:atos:unify_openscape_bcf:*:*:*:*:*:*:*:*
atosunify_openscape_branch*cpe:2.3:a:atos:unify_openscape_branch:*:*:*:*:*:*:*:*
atosunify_openscape_session_border_controller*cpe:2.3:a:atos:unify_openscape_session_border_controller:*:*:*:*:*:*:*:*

CVSS3

7.2

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

HIGH

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

AI Score

6.7

Confidence

High

EPSS

0.002

Percentile

62.1%

Related for CVE-2023-30638