6.5
CVSSv2

CVE-2014-4046

Published: 17/06/2014 Updated: 09/10/2018
CVSS v2 Base Score: 6.5 | Impact Score: 6.4 | Exploitability Score: 8
VMScore: 578
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

Asterisk Open Source 11.x prior to 11.10.1 and 12.x prior to 12.3.1 and Certified Asterisk 11.6 prior to 11.6-cert3 allows remote authenticated Manager users to execute arbitrary shell commands via a MixMonitor action.

Vulnerable Product Search on Vulmon Subscribe to Product

digium asterisk 11.9.0

digium asterisk 11.0.0

digium asterisk 11.1.2

digium asterisk 11.2.0

digium asterisk 11.4.0

digium asterisk 11.5.0

digium asterisk 11.8.0

digium asterisk 11.8.1

digium asterisk 11.0.1

digium asterisk 11.3.0

digium asterisk 11.1.0

digium asterisk 11.1.1

digium asterisk 11.10.0

digium asterisk 11.0.2

digium asterisk 11.5.1

digium asterisk 12.2.0

digium asterisk 12.0.0

digium asterisk 12.3.0

digium asterisk 12.1.0

digium asterisk 12.1.1

digium certified asterisk 11.6

digium certified asterisk 11.6.0