Aplio Internet Phone Arbitrary...

- AV AC AU C I A
发布: 2000-10-06
修订: 2025-04-13

A vulnerability exists in Aplio's IP phone (release 2.0.33 build #1). URLs submitted to the device are not properly filtered for shell meta characters. As a result, it is possible for a remote attacker to execute arbitrary shell commands on the host device. An attacker sufficiently familiar with the workings of this device may be able to carry out a denial of service against it, or otherwise interfere with normal operation (possibly intercepting calls, etc.)

0%
暂无可用Exp或PoC
当前有0条受影响产品信息