Lucene search

K
prionPRIOn knowledge basePRION:CVE-2023-25649
HistoryAug 25, 2023 - 10:15 a.m.

Command injection

2023-08-2510:15:00
PRIOn knowledge base
www.prio-n.com
7
zte
command injection
vulnerability
mobile internet
arbitrary commands
set_device_led interface

8.9 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

48.3%

There is a command injection vulnerability in a mobile internet product of ZTE. Due to insufficient validation of SET_DEVICE_LED interface parameter, an authenticated attacker could use the vulnerability to execute arbitrary commands.

8.9 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

48.3%

Related for PRION:CVE-2023-25649