CVEs (2)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Cerner 1Connectivity Engine 4 Firmware Nov 21, 2024 Apr 25, 2019 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 An issue was discovered on Cerner Connectivity Engine (CCE) 4 devices. The hostname, timezone, and NTP server configurations on the CCE device are vulnerable to command injection by sending a crafted configuration file o...Show more |
1Cerner 1Connectivity Engine 4 Firmware Nov 21, 2024 Apr 25, 2019 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 An issue was discovered on Cerner Connectivity Engine (CCE) 4 devices. The user running the main CCE firmware has NOPASSWD sudo privileges to several utilities that could be used to escalate privileges to root. One examp...Show more |