Security Advisory

CVE-2019-7632

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2019-02-08 05:00:00
Last updated 2024-09-16 20:31:17
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

LifeSize Team, Room, Passport, and Networker 220 devices allow Authenticated Remote OS Command Injection, as demonstrated by shell metacharacters in the support/mtusize.php mtu_size parameter. The lifesize default password for the cli account may sometimes be used for authentication.