An OS command injection vulnerability exists in AE1021PE firmware version 2.0.9 and earlier and AE1021 firmware version 2.0.9 and earlier. If this vulnerability is exploited, an arbitrary OS command may be executed by an attacker who can log in to the product.
History

Tue, 21 Oct 2025 23:15:00 +0000


Tue, 21 Oct 2025 20:30:00 +0000


Tue, 21 Oct 2025 19:30:00 +0000


Mon, 03 Feb 2025 17:15:00 +0000

Type Values Removed Values Added
Metrics kev

{'dateAdded': '2023-12-21'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'active', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: jpcert

Published:

Updated: 2025-10-21T23:05:29.972Z

Reserved: 2023-12-01T02:30:49.222Z

Link: CVE-2023-49897

cve-icon Vulnrichment

Updated: 2024-08-02T22:09:48.211Z

cve-icon NVD

Status : Modified

Published: 2023-12-06T07:15:41.883

Modified: 2025-10-21T23:16:14.460

Link: CVE-2023-49897

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.