Vulnerabilities > CVE-2022-34869 - Unspecified vulnerability in Allied-Telesis Centrecom Ar260S Firmware

047910
CVSS 8.8 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
network
low complexity
allied-telesis

Summary

Undocumented hidden command that can be executed from the telnet function of CentreCOM AR260S V2 firmware versions prior to Ver.3.3.7 allows a remote authenticated attacker to execute an arbitrary OS command.

Vulnerable Configurations

Part Description Count
OS
Allied-Telesis
1
Hardware
Allied-Telesis
1