Aller au contenu

Fiche vulnérabilité

CVE-2023-49897 : faille exploitée fxc ae1021 firmware (CVSS 8.8)

Description

An OS command injection vulnerability exists in AE1021PE firmware version 2.0.9 and earlier and AE1021 firmware version 2.0.9 and earlier. If this vulnerability is exploited, an arbitrary OS command may be executed by an attacker who can log in to the product.

En bref

Sévérité
Élevée (CVSS 8.8)
Vecteur CVSS
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitation active
Oui, inscrite au catalogue CISA KEV
Publication
6 déc. 2023
Dernière mise à jour
17 juin 2026

Produits concernés

  • fxc ae1021 firmware
  • fxc ae1021pe firmware

Correctif et mesures

Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Références

Rechercher une autre vulnérabilité dans la base CVE