CVE Database
/

CVE-2017-14001

Back to search

CVE-2017-14001

Published: Sep 26, 2017

Modified: Aug 5, 2024

PUBLISHED

Description

An Improper Neutralization of Special Elements used in an OS Command issue was discovered in Digium Asterisk GUI 2.1.0 and prior. An OS command injection vulnerability has been identified that may allow the execution of arbitrary code on the system through the inclusion of OS commands in the URL request of the program.

VendorProductVersions

n/a

Digium Asterisk GUI

affected
Digium Asterisk GUI

Weaknesses (CWE)

References

100950
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now