An issue in Casa Systems NTC-221 version 2.0.99.0 and before allows a remote attacker to execute arbitrary code via a crafted payload to the /www/cgi-bin/nas.cgi component.
References
Configurations
No configuration.
History
23 Oct 2024, 17:35
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-306 | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.0 |
23 Oct 2024, 15:12
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
22 Oct 2024, 22:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-10-22 22:15
Updated : 2024-10-23 17:35
NVD link : CVE-2024-26519
Mitre link : CVE-2024-26519
CVE.ORG link : CVE-2024-26519
JSON object : View
Products Affected
No product.
CWE
CWE-306
Missing Authentication for Critical Function