An issue exists on Cerner Connectivity Engine (CCE) 4 devices. The hostname, timezone, and NTP server configurations on the CCE device are vulnerable to command injection by sending a crafted configuration file over the network.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
cerner connectivity_engine_4_firmware |