Lucene search

K
cvelistIcscertCVELIST:CVE-2017-14001
HistorySep 26, 2017 - 2:00 a.m.

CVE-2017-14001

2017-09-2602:00:00
CWE-78
icscert
www.cve.org
4

AI Score

9.2

Confidence

High

EPSS

0.001

Percentile

45.3%

An Improper Neutralization of Special Elements used in an OS Command issue was discovered in Digium Asterisk GUI 2.1.0 and prior. An OS command injection vulnerability has been identified that may allow the execution of arbitrary code on the system through the inclusion of OS commands in the URL request of the program.

CNA Affected

[
  {
    "product": "Digium Asterisk GUI",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "Digium Asterisk GUI"
      }
    ]
  }
]

AI Score

9.2

Confidence

High

EPSS

0.001

Percentile

45.3%

Related for CVELIST:CVE-2017-14001