CVE-2019-3914: Command Injection
Remote command injection vulnerability in Verizon Fios Quantum Gateway (G1100) firmware version 02.01.00.05 allows a remote, authenticated attacker to execute arbitrary commands on the target device by adding an access control rule for a network object with a crafted hostname.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-3914?
CVE-2019-3914 has a high severity rating due to the potential for remote command execution by an authenticated attacker.
How do I fix CVE-2019-3914?
To mitigate CVE-2019-3914, update the Verizon Fios Quantum Gateway G1100 firmware to a version that is not affected by this vulnerability.
Who is affected by CVE-2019-3914?
CVE-2019-3914 affects users of the Verizon Fios Quantum Gateway G1100 running firmware version 02.01.00.05.
What type of vulnerability is CVE-2019-3914?
CVE-2019-3914 is classified as a remote command injection vulnerability.
Can CVE-2019-3914 be exploited remotely?
Yes, CVE-2019-3914 can be exploited remotely by an authenticated attacker.