81454 : Asterisk Manager Interface Multiple Action Handling Remote Shell Command Execution Printer | http://osvdb.org/81454 | Email This | Edit Vulnerability
Asterisk Manager Interface contains a flaw when handling multiple actions, which may allow an attacker to execute arbitrary shell commands.
Upgrade to version C.3.7.4 or higher for Business Edition or 1.6.2.24, 1.8.11.1 or 10.3.1 or higher for Open Source, as they have been reported to fix this vulnerability. An upgrade is required as there are no known workarounds.
CVSSv2 Base Score = 6.5 Source: nvd.nist.gov | Generated: 2012-05-01 | Disagree?
Add Comment Hide Add Comment