CVE-2024-31408
Severity CVSS v4.0:
Pending analysis
Type:
CWE-78
OS Command Injections
Publication date:
22/11/2024
Last modified:
22/11/2024
Description
OS command injection vulnerability exists in AIPHONE IX SYSTEM and IXG SYSTEM. A network-adjacent authenticated attacker may execute an arbitrary OS command with root privileges by sending a specially crafted request.
Impact
Base Score 3.x
8.00
Severity 3.x
HIGH



