- Description
- Avocent CCM console server running firmware 2.1 CCM4850 allows remote authenticated attackers to bypass port restrictions by connecting to the server via SSH and using the connect command to access the serial port.
- Source
- cve@mitre.org
- NVD status
- Deferred
CVSS 2.0
- Type
- Primary
- Base score
- 4.6
- Impact score
- 6.4
- Exploitability score
- 3.9
- Vector string
- AV:L/AC:L/Au:N/C:P/I:P/A:P
- Hype score
- Not currently trending
[
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:data_center_resources:avocent:ccm4850_2.1_firmware:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "8CE7177C-4C14-43EC-8C31-54733A5B7133"
}
],
"operator": "OR"
}
]
}
]