CVE-2023-36670
18.07.2023, 19:15
A remotely exploitable command injection vulnerability was found on the Kratos NGC-IDU 9.1.0.4. An attacker can execute arbitrary Linux commands as root by sending crafted TCP requests to the device.
Vendor | Product | Version |
---|---|---|
kratosdefense | ngc_indoor_unit_firmware | 9.1.0.4 |
𝑥
= Vulnerable software versions