A10 Networks Advanced Core Operating System (ACOS) 4.1.4 GR1-P1

CPE Details

A10 Networks Advanced Core Operating System (ACOS) 4.1.4 GR1-P1
4.1.4
2024-12-13
17h14 +00:00
2024-12-13
17h14 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:o:a10networks:advanced_core_operating_system:4.1.4:gr1-p1:*:*:*:*:*:*

Informations

Vendor

a10networks

Product

advanced_core_operating_system

Version

4.1.4

Update

gr1-p1

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2024-30369 2024-06-06 17h53 +00:00 A10 Thunder ADC Incorrect Permission Assignment Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of A10 Thunder ADC. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the installer. The issue results from incorrect permissions on a file. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of root. Was ZDI-CAN-22754.
7.8
High
CVE-2024-30368 2024-06-06 17h52 +00:00 A10 Thunder ADC CsrRequestView Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of A10 Thunder ADC. Authentication is required to exploit this vulnerability. The specific flaw exists within the CsrRequestView class. The issue results from the lack of proper validation of a user-supplied string before using it to execute a system call. An attacker can leverage this vulnerability to execute code in the context of a10user. Was ZDI-CAN-22517.
8.8
High
CVE-2018-5390 2018-08-06 18h00 +00:00 Linux kernel versions 4.9+ can be forced to make very expensive calls to tcp_collapse_ofo_queue() and tcp_prune_ofo_queue() for every incoming packet which can lead to a denial of service.
7.5
High