cve/2023/CVE-2023-36670.md
2024-06-18 02:51:15 +02:00

647 B

CVE-2023-36670

Description

A remotely exploitable command injection vulnerability was found on the Kratos NGC-IDU 9.1.0.4. An attacker can execute arbitrary Linux commands as root by sending crafted TCP requests to the device.

POC

Reference

Github

No PoCs found on GitHub currently.