An issue exists on Alcatel-Lucent OmniVista 8770 devices prior to 4.1.2. An authenticated remote attacker, with elevated privileges in the Web Directory component on port 389, may upload a PHP file to achieve Remote Code Execution as SYSTEM.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
al-enterprise omnivista 8770 |