Vulnerabilities > Noviflow > Noviware > nw500.2.12

DATE CVE VULNERABILITY TITLE RISK
2020-08-17 CVE-2020-13122 OS Command Injection vulnerability in Noviflow Noviware Nw500.2.12
The novish command-line interface, included in NoviFlow NoviWare before NW500.2.12 and deployed on NoviSwitch devices, is vulnerable to command injection in the "show status destination ipaddr" command.
network
low complexity
noviflow CWE-78
8.0