9

CVE-2011-1599

manager.c in the Manager Interface in Asterisk Open Source 1.4.x before 1.4.40.1, 1.6.1.x before 1.6.1.25, 1.6.2.x before 1.6.2.17.3, and 1.8.x before 1.8.3.3 and Asterisk Business Edition C.x.x before C.3.6.4 does not properly check for the system privilege, which allows remote authenticated users to execute arbitrary commands via an Originate action that has an Async header in conjunction with an Application header.

Data is provided by the National Vulnerability Database (NVD)
DigiumAsterisk Version1.4.0
DigiumAsterisk Version1.4.0 Updatebeta1
DigiumAsterisk Version1.4.0 Updatebeta2
DigiumAsterisk Version1.4.0 Updatebeta3
DigiumAsterisk Version1.4.0 Updatebeta4
DigiumAsterisk Version1.4.1
DigiumAsterisk Version1.4.2
DigiumAsterisk Version1.4.3
DigiumAsterisk Version1.4.10
DigiumAsterisk Version1.4.10.1
DigiumAsterisk Version1.4.11
DigiumAsterisk Version1.4.12
DigiumAsterisk Version1.4.12.1
DigiumAsterisk Version1.4.13
DigiumAsterisk Version1.4.14
DigiumAsterisk Version1.4.15
DigiumAsterisk Version1.4.16
DigiumAsterisk Version1.4.16.1
DigiumAsterisk Version1.4.16.2
DigiumAsterisk Version1.4.17
DigiumAsterisk Version1.4.18
DigiumAsterisk Version1.4.19
DigiumAsterisk Version1.4.19 Updaterc1
DigiumAsterisk Version1.4.19 Updaterc2
DigiumAsterisk Version1.4.19 Updaterc3
DigiumAsterisk Version1.4.19 Updaterc4
DigiumAsterisk Version1.4.19.1
DigiumAsterisk Version1.4.19.2
DigiumAsterisk Version1.4.20
DigiumAsterisk Version1.4.20 Updaterc1
DigiumAsterisk Version1.4.20 Updaterc2
DigiumAsterisk Version1.4.20 Updaterc3
DigiumAsterisk Version1.4.20.1
DigiumAsterisk Version1.4.21
DigiumAsterisk Version1.4.21 Updaterc1
DigiumAsterisk Version1.4.21 Updaterc2
DigiumAsterisk Version1.4.21.1
DigiumAsterisk Version1.4.21.2
DigiumAsterisk Version1.4.22
DigiumAsterisk Version1.4.22 Updaterc1
DigiumAsterisk Version1.4.22 Updaterc2
DigiumAsterisk Version1.4.22 Updaterc3
DigiumAsterisk Version1.4.22 Updaterc4
DigiumAsterisk Version1.4.22 Updaterc5
DigiumAsterisk Version1.4.22.1
DigiumAsterisk Version1.4.22.2
DigiumAsterisk Version1.4.23
DigiumAsterisk Version1.4.23 Updaterc1
DigiumAsterisk Version1.4.23 Updaterc2
DigiumAsterisk Version1.4.23 Updaterc3
DigiumAsterisk Version1.4.23 Updaterc4
DigiumAsterisk Version1.4.23.1
DigiumAsterisk Version1.4.23.2
DigiumAsterisk Version1.4.24
DigiumAsterisk Version1.4.24 Updaterc1
DigiumAsterisk Version1.4.24.1
DigiumAsterisk Version1.4.25
DigiumAsterisk Version1.4.25 Updaterc1
DigiumAsterisk Version1.4.25.1
DigiumAsterisk Version1.4.26
DigiumAsterisk Version1.4.26 Updaterc1
DigiumAsterisk Version1.4.26 Updaterc2
DigiumAsterisk Version1.4.26 Updaterc3
DigiumAsterisk Version1.4.26 Updaterc4
DigiumAsterisk Version1.4.26 Updaterc5
DigiumAsterisk Version1.4.26 Updaterc6
DigiumAsterisk Version1.4.26.1
DigiumAsterisk Version1.4.26.2
DigiumAsterisk Version1.4.26.3
DigiumAsterisk Version1.4.27
DigiumAsterisk Version1.4.27 Updaterc1
DigiumAsterisk Version1.4.27 Updaterc2
DigiumAsterisk Version1.4.27 Updaterc3
DigiumAsterisk Version1.4.27 Updaterc4
DigiumAsterisk Version1.4.27 Updaterc5
DigiumAsterisk Version1.4.27.1
DigiumAsterisk Version1.4.28
DigiumAsterisk Version1.4.28 Updaterc1
DigiumAsterisk Version1.4.29
DigiumAsterisk Version1.4.29 Updaterc1
DigiumAsterisk Version1.4.29.1
DigiumAsterisk Version1.4.30
DigiumAsterisk Version1.4.30 Updaterc2
DigiumAsterisk Version1.4.30 Updaterc3
DigiumAsterisk Version1.4.31
DigiumAsterisk Version1.4.31 Updaterc1
DigiumAsterisk Version1.4.31 Updaterc2
DigiumAsterisk Version1.4.32
DigiumAsterisk Version1.4.32 Updaterc1
DigiumAsterisk Version1.4.33
DigiumAsterisk Version1.4.33 Updaterc1
DigiumAsterisk Version1.4.33 Updaterc2
DigiumAsterisk Version1.4.33.1
DigiumAsterisk Version1.4.34
DigiumAsterisk Version1.4.34 Updaterc1
DigiumAsterisk Version1.4.34 Updaterc2
DigiumAsterisk Version1.4.35
DigiumAsterisk Version1.4.35 Updaterc1
DigiumAsterisk Version1.4.36
DigiumAsterisk Version1.4.36 Updaterc1
DigiumAsterisk Version1.4.37
DigiumAsterisk Version1.4.37 Updaterc1
DigiumAsterisk Version1.4.38
DigiumAsterisk Version1.4.38 Updaterc1
DigiumAsterisk Version1.4.39
DigiumAsterisk Version1.4.39 Updaterc1
DigiumAsterisk Version1.4.39.1
DigiumAsterisk Version1.4.39.2
DigiumAsterisk Version1.4.40
DigiumAsterisk Version1.4.40 Updaterc1
DigiumAsterisk Version1.4.40 Updaterc2
DigiumAsterisk Version1.4.40 Updaterc3
DigiumAsterisk Version1.6.2.0
DigiumAsterisk Version1.6.2.0 Updaterc2
DigiumAsterisk Version1.6.2.0 Updaterc3
DigiumAsterisk Version1.6.2.0 Updaterc4
DigiumAsterisk Version1.6.2.0 Updaterc5
DigiumAsterisk Version1.6.2.0 Updaterc6
DigiumAsterisk Version1.6.2.0 Updaterc7
DigiumAsterisk Version1.6.2.0 Updaterc8
DigiumAsterisk Version1.6.2.1
DigiumAsterisk Version1.6.2.1 Updaterc1
DigiumAsterisk Version1.6.2.2
DigiumAsterisk Version1.6.2.3 Updaterc2
DigiumAsterisk Version1.6.2.4
DigiumAsterisk Version1.6.2.5
DigiumAsterisk Version1.6.2.6
DigiumAsterisk Version1.6.2.6 Updaterc1
DigiumAsterisk Version1.6.2.6 Updaterc2
DigiumAsterisk Version1.6.2.15 Updaterc1
DigiumAsterisk Version1.6.2.16
DigiumAsterisk Version1.6.2.16 Updaterc1
DigiumAsterisk Version1.6.2.16.1
DigiumAsterisk Version1.6.2.16.2
DigiumAsterisk Version1.6.2.17
DigiumAsterisk Version1.6.2.17 Updaterc1
DigiumAsterisk Version1.6.2.17 Updaterc2
DigiumAsterisk Version1.6.2.17 Updaterc3
DigiumAsterisk Version1.6.2.17.1
DigiumAsterisk Version1.6.2.17.2
DigiumAsterisk Version1.8.0
DigiumAsterisk Version1.8.0 Updatebeta1
DigiumAsterisk Version1.8.0 Updatebeta2
DigiumAsterisk Version1.8.0 Updatebeta3
DigiumAsterisk Version1.8.0 Updatebeta4
DigiumAsterisk Version1.8.0 Updatebeta5
DigiumAsterisk Version1.8.0 Updaterc2
DigiumAsterisk Version1.8.0 Updaterc3
DigiumAsterisk Version1.8.0 Updaterc4
DigiumAsterisk Version1.8.0 Updaterc5
DigiumAsterisk Version1.8.1
DigiumAsterisk Version1.8.1 Updaterc1
DigiumAsterisk Version1.8.1.1
DigiumAsterisk Version1.8.1.2
DigiumAsterisk Version1.8.2
DigiumAsterisk Version1.8.2.1
DigiumAsterisk Version1.8.2.2
DigiumAsterisk Version1.8.2.3
DigiumAsterisk Version1.8.2.4
DigiumAsterisk Version1.8.3
DigiumAsterisk Version1.8.3 Updaterc1
DigiumAsterisk Version1.8.3 Updaterc2
DigiumAsterisk Version1.8.3 Updaterc3
DigiumAsterisk Version1.8.3.1
DigiumAsterisk Version1.8.3.2
DigiumAsterisk Versionc.1.0 Updatebeta7 Editionbusiness
   DigiumAsterisk Versionc.1.0 Updatebeta7 Editionbusiness
DigiumAsterisk Versionc.1.0 Updatebeta8 Editionbusiness
   DigiumAsterisk Versionc.1.0 Updatebeta8 Editionbusiness
DigiumAsterisk Versionc.1.6 Update- Editionbusiness
   DigiumAsterisk Versionc.1.6 Update- Editionbusiness
DigiumAsterisk Versionc.1.6.1 Update- Editionbusiness
   DigiumAsterisk Versionc.1.6.1 Update- Editionbusiness
DigiumAsterisk Versionc.1.6.2 Update- Editionbusiness
   DigiumAsterisk Versionc.1.6.2 Update- Editionbusiness
DigiumAsterisk Versionc.1.8.0 Update- Editionbusiness
   DigiumAsterisk Versionc.1.8.0 Update- Editionbusiness
DigiumAsterisk Versionc.1.8.1 Update- Editionbusiness
   DigiumAsterisk Versionc.1.8.1 Update- Editionbusiness
DigiumAsterisk Versionc.2.3 Update- Editionbusiness
   DigiumAsterisk Versionc.2.3 Update- Editionbusiness
DigiumAsterisk Versionc.3.0 Update- Editionbusiness
   DigiumAsterisk Versionc.3.0 Update- Editionbusiness
DigiumAsterisk Versionc.3.1.0 Update- Editionbusiness
   DigiumAsterisk Versionc.3.1.0 Update- Editionbusiness
DigiumAsterisk Versionc.3.1.1 Update- Editionbusiness
   DigiumAsterisk Versionc.3.1.1 Update- Editionbusiness
DigiumAsterisk Versionc.3.2.2 Update- Editionbusiness
   DigiumAsterisk Versionc.3.2.2 Update- Editionbusiness
DigiumAsterisk Versionc.3.2.3 Update- Editionbusiness
   DigiumAsterisk Versionc.3.2.3 Update- Editionbusiness
DigiumAsterisk Versionc.3.3.2 Update- Editionbusiness
   DigiumAsterisk Versionc.3.3.2 Update- Editionbusiness
DigiumAsterisk Versionc.3.6.2 Update- Editionbusiness
   DigiumAsterisk Versionc.3.6.2 Update- Editionbusiness
DigiumAsterisk Version1.6.1.0
DigiumAsterisk Version1.6.1.0 Updaterc2
DigiumAsterisk Version1.6.1.0 Updaterc3
DigiumAsterisk Version1.6.1.0 Updaterc4
DigiumAsterisk Version1.6.1.0 Updaterc5
DigiumAsterisk Version1.6.1.1
DigiumAsterisk Version1.6.1.2
DigiumAsterisk Version1.6.1.3 Updaterc1
DigiumAsterisk Version1.6.1.4
DigiumAsterisk Version1.6.1.5
DigiumAsterisk Version1.6.1.5 Updaterc1
DigiumAsterisk Version1.6.1.6
DigiumAsterisk Version1.6.1.7 Updaterc1
DigiumAsterisk Version1.6.1.7 Updaterc2
DigiumAsterisk Version1.6.1.8
DigiumAsterisk Version1.6.1.9
DigiumAsterisk Version1.6.1.10
DigiumAsterisk Version1.6.1.10 Updaterc1
DigiumAsterisk Version1.6.1.10 Updaterc2
DigiumAsterisk Version1.6.1.10 Updaterc3
DigiumAsterisk Version1.6.1.11
DigiumAsterisk Version1.6.1.12
DigiumAsterisk Version1.6.1.12 Updaterc1
DigiumAsterisk Version1.6.1.13
DigiumAsterisk Version1.6.1.13 Updaterc1
DigiumAsterisk Version1.6.1.14
DigiumAsterisk Version1.6.1.15 Updaterc2
DigiumAsterisk Version1.6.1.16
DigiumAsterisk Version1.6.1.17
DigiumAsterisk Version1.6.1.18
DigiumAsterisk Version1.6.1.18 Updaterc1
DigiumAsterisk Version1.6.1.18 Updaterc2
DigiumAsterisk Version1.6.1.19
DigiumAsterisk Version1.6.1.19 Updaterc1
DigiumAsterisk Version1.6.1.19 Updaterc2
DigiumAsterisk Version1.6.1.19 Updaterc3
DigiumAsterisk Version1.6.1.20
DigiumAsterisk Version1.6.1.20 Updaterc1
DigiumAsterisk Version1.6.1.20 Updaterc2
DigiumAsterisk Version1.6.1.21
DigiumAsterisk Version1.6.1.22
DigiumAsterisk Version1.6.1.23
DigiumAsterisk Version1.6.1.24
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.34% 0.535
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 9 8 10
AV:N/AC:L/Au:S/C:C/I:C/A:C
CWE-20 Improper Input Validation

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.