The web service on Nexxt Amp300 ARN02304U8 42.103.1.5095 and 80.103.2.5045 devices allows remote OS command execution by placing &telnetd in the JSON host field to the ping feature of the goform/sysTools component. Authentication is required
Project Subscriptions
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 09 Apr 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-04-09T20:41:36.183Z
Reserved: 2022-10-30T00:00:00.000Z
Link: CVE-2022-44149
Updated: 2024-08-03T13:47:05.700Z
Status : Modified
Published: 2023-01-06T17:15:09.363
Modified: 2025-04-09T21:15:42.097
Link: CVE-2022-44149
No data.
OpenCVE Enrichment
No data.
Weaknesses