← Back

CVE-2014-7249

nvd nist
Published: Dec 19, 2014Modified: May 6, 2026

JSON object

Loading...
10.0
Vector
AV:N/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 10.0 / Impact: 10.0
Source: NVD

Description

Buffer overflow on the Allied Telesis AR440S, AR441S, AR442S, AR745, AR750S, AR750S-DP, AT-8624POE, AT-8624T/2M, AT-8648T/2SP, AT-8748XL, AT-8848, AT-9816GB, AT-9924T, AT-9924Ts, CentreCOM AR415S, CentreCOM AR450S, CentreCOM AR550S, CentreCOM AR570S, CentreCOM 8700SL, CentreCOM 8948XL, CentreCOM 9924SP, CentreCOM 9924T/4SP, Rapier 48i, and SwitchBlade4000 with firmware before 2.9.1-21 allows remote attackers to execute arbitrary code via a crafted HTTP POST request.

Affected (48)

Products: Alliedtelesis: Centrecom Ar415s Firmware, Centrecom Ar415s, At 8624t/2m Firmware, At 8624t/2m, Ar442s Firmware, Ar442s, At 9924t Firmware, At 9924t, At 8848 Firmware, At 8848, Rapier 48i Firmware, Rapier 48i, Centrecom Ar450s Firmware, Centrecom Ar450s, Ar745 Firmware, Ar745, Ar441s Firmware, Ar441s, Centrecom 9924sp Firmware, Centrecom 9924sp, Switchblade4000 Firmware, Switchblade4000, At 8624poe Firmware, At 8624poe, Centrecom 9924t/4sp Firmware, Centrecom 9924t/4sp, At 9816gb Firmware, At 9816gb, At 9924ts Firmware, At 9924ts, Ar750s Firmware, Ar750s, Centrecom Ar570s Firmware, Centrecom Ar570s, Centrecom 8948xl Firmware, Centrecom 8948xl, At 8648t/2sp Firmware, At 8648t/2sp, Centrecom 8700sl Firmware, Centrecom Ar8700sl, Ar750s Dp Firmware, Ar750s Dp, Centrecom Ar550s Firmware, Centrecom Ar550s, At 8748xl Firmware, At 8748xl, Ar440s Firmware, Ar440s
48 products
Centrecom Ar415s Firmware
Centrecom Ar415s
At 8624t/2m Firmware
At 8624t/2m
Ar442s Firmware
Ar442s
At 9924t Firmware
At 9924t
At 8848 Firmware
At 8848
Rapier 48i Firmware
Rapier 48i
Centrecom Ar450s Firmware
Centrecom Ar450s
Ar745 Firmware
Ar745
Ar441s Firmware
Ar441s
Centrecom 9924sp Firmware
Centrecom 9924sp
Switchblade4000 Firmware
Switchblade4000
At 8624poe Firmware
At 8624poe
Centrecom 9924t/4sp Firmware
Centrecom 9924t/4sp
At 9816gb Firmware
At 9816gb
At 9924ts Firmware
At 9924ts
Ar750s Firmware
Ar750s
Centrecom Ar570s Firmware
Centrecom Ar570s
Centrecom 8948xl Firmware
Centrecom 8948xl
At 8648t/2sp Firmware
At 8648t/2sp
Centrecom 8700sl Firmware
Centrecom Ar8700sl
Ar750s Dp Firmware
Ar750s Dp
Centrecom Ar550s Firmware
Centrecom Ar550s
At 8748xl Firmware
At 8748xl
Ar440s Firmware
Ar440s
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Up to 2.9.1-20
All versions
Configuration B
2 vulnerable
Vulnerable SoftwareAffected Versions
Up to 2.9.1-20
All versions
Configuration C
2 vulnerable
Vulnerable SoftwareAffected Versions
Up to 2.9.1-20
All versions
Configuration D
2 vulnerable
Vulnerable SoftwareAffected Versions
Up to 2.9.1-20
All versions
Configuration E
2 vulnerable
Vulnerable SoftwareAffected Versions
Up to 2.9.1-20
All versions
Configuration F
2 vulnerable
Vulnerable SoftwareAffected Versions
Up to 2.9.1-20
All versions
Configuration G
2 vulnerable
Vulnerable SoftwareAffected Versions
Up to 2.9.1-20
All versions
Configuration H
2 vulnerable
Vulnerable SoftwareAffected Versions
Up to 2.9.1-20
All versions
Configuration I
2 vulnerable
Vulnerable SoftwareAffected Versions
Up to 2.9.1-20
All versions
Configuration J
2 vulnerable
Vulnerable SoftwareAffected Versions
Up to 2.9.1-20
All versions
Configuration K
2 vulnerable
Vulnerable SoftwareAffected Versions
Up to 2.9.1-20
All versions
Configuration L
2 vulnerable
Vulnerable SoftwareAffected Versions
Up to 2.9.1-20
All versions
Configuration M
2 vulnerable
Vulnerable SoftwareAffected Versions
Up to 2.9.1-20
All versions
Configuration N
2 vulnerable
Vulnerable SoftwareAffected Versions
Up to 2.9.1-20
All versions
Configuration O
2 vulnerable
Vulnerable SoftwareAffected Versions
Up to 2.9.1-20
All versions
Configuration P
2 vulnerable
Vulnerable SoftwareAffected Versions
Up to 2.9.1-20
All versions
Configuration Q
2 vulnerable
Vulnerable SoftwareAffected Versions
Up to 2.9.1-20
All versions
Configuration R
2 vulnerable
Vulnerable SoftwareAffected Versions
Up to 2.9.1-20
All versions
Configuration S
2 vulnerable
Vulnerable SoftwareAffected Versions
Up to 2.9.1-20
All versions
Configuration T
2 vulnerable
Vulnerable SoftwareAffected Versions
Up to 2.9.1-20
All versions
Configuration U
2 vulnerable
Vulnerable SoftwareAffected Versions
Up to 2.9.1-20
All versions
Configuration V
2 vulnerable
Vulnerable SoftwareAffected Versions
Up to 2.9.1-20
All versions
Configuration W
2 vulnerable
Vulnerable SoftwareAffected Versions
Up to 2.9.1-20
All versions
Configuration X
2 vulnerable
Vulnerable SoftwareAffected Versions
Up to 2.9.1-20
All versions

References (6)

Source: vultures@jpcert.or.jp
Vendor Advisory
Source: vultures@jpcert.or.jp
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.