An issue was discovered in ADTRAN PMAA 1.6.2-1, 1.6.3, and 1.6.4. NETCONF Access Management (NACM) allows unprivileged users to create privileged users and execute arbitrary commands via the use of the diagnostic-profile over RESTCONF.
References
Link Resource
https://supportforums.adtran.com/docs/DOC-9344 Vendor Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2019-03-27T20:04:15

Updated: 2019-03-27T20:04:15

Reserved: 2018-11-28T00:00:00


Link: CVE-2018-19648

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2019-03-27T21:29:00.217

Modified: 2019-10-03T00:03:26.223


Link: CVE-2018-19648

JSON object: View

cve-icon Redhat Information

No data.

CWE