サイト内の現在位置

OS command injection vulnerability in DT900

Number:NV23-011
CVE:CVE-2023-3741

Overview

DT900 contains an OS command injection vulnerability.

Products Affected

DT900

Affected Version

USA
ITK-6DGS-1(BK) TEL
ITK-32LCGS-1(BK) TEL
ITK-32TCGS-1(BK) TEL
ITK-6D-1(BK)TEL
ITK-12D-1(BK)TEL
ITK-8LCX-1(BK)TEL
ITK-8TCGX-1(BK)TEL
All Versions are Affected

Australia
ITK-6DGS-1A(BK) TEL
ITK-32LCGS-1A(BK) TEL
ITK-32TCGS-1A(BK) TEL
All Versions are Affected

Europe/Asia
ITK-6DGS-1P(BK) TEL
ITK-32LCGS-1P(BK) TEL
ITK-32TCGS-1P(BK) TEL
ITK-6D-1P(BK)TEL
ITK-12D-1P(BK)TEL
ITK-6DG-1P(BK)TEL
ITK-12DG-1P(BK)TEL
ITK-8LCX-1P(BK)TEL
ITK-8LCG-1P(BK)TEL
ITK-32LCG-1P(BK)TEL
ITK-8TCGX-1P(BK)TEL
ITK-32TCG-1P(BK)TEL
All Versions are Affected

Solution

Please update.
v5.3.4.4
v5.6.0.20

References

Credit

reported by Mr. Gianluca Altomani. for NEC-PSIRT

 

Update

2023/11/29
First edition