CVE-2024-39436
6.7
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Exploitability: 0.8 / Impact: 5.9
Source: NVD
Description
In linkturbonative service, there is a possible command injection due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed.
Affected (2)
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 13.0 |
| Running on/with | Platform Versions |
|---|---|
Unisoc S8000 | All versions |
Unisoc Sc7731e | All versions |
Unisoc Sc9832e | All versions |
Unisoc Sc9863a | All versions |
Unisoc T310 | All versions |
Unisoc T606 | All versions |
Unisoc T610 | All versions |
Unisoc T612 | All versions |
Unisoc T616 | All versions |
Unisoc T618 | All versions |
Unisoc T760 | All versions |
Unisoc T770 | All versions |
Unisoc T820 | All versions |
References (1)
Source: security@unisoc.com
Vendor Advisory
Timeline
No history available yet.