Security Advisory

CVE-2018-15481

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-08-21 16:00:00
Last updated 2024-08-05 09:54:03
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Improper input sanitization within the restricted administration shell on UCOPIA Wireless Appliance devices using firmware version 5.1.x before 5.1.13 allows authenticated remote attackers to escape the shell and escalate their privileges by adding a LocalCommand to the SSH configuration file in the user home folder.