CVE-2024-7397: Unauthenticated Command Injection
Published Aug 5, 2024
·Updated
Improper filering of special characters result in a command ('command injection') vulnerability in Korenix JetPort 5601v3.This issue affects JetPort 5601v3: through 1.2.
Affected Software
1 affected component
Korenix JetPort 5601v3<=1.2
Event History
Aug 5, 2024
CVE Published
via MITRE·01:25 PM
Data Sourced
via MITRE·01:25 PM
DescriptionWeakness
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-7397?
CVE-2024-7397 is classified as a medium severity command injection vulnerability.
2
How do I fix CVE-2024-7397?
To mitigate CVE-2024-7397, update the Korenix JetPort 5601v3 to the latest version that resolves this vulnerability.
3
Who is affected by CVE-2024-7397?
CVE-2024-7397 affects users of Korenix JetPort 5601v3 versions up to and including 1.2.
4
What is the impact of CVE-2024-7397?
The impact of CVE-2024-7397 can lead to unauthorized command execution due to improper filtering of special characters.
5
Is there a CVE-2024-7397 exploit available?
Yes, proof-of-concept exploits for CVE-2024-7397 have been reported, which makes it a priority for remediation.