Vulnerability Details CVE-2018-20053
An issue was discovered on Cerner Connectivity Engine (CCE) 4 devices. The hostname, timezone, and NTP server configurations on the CCE device are vulnerable to command injection by sending a crafted configuration file over the network.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.043
EPSS Ranking 88.3%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 7.5
Products affected by CVE-2018-20053
-
cpe:2.3:h:cerner:connectivity_engine_4:-
-
cpe:2.3:o:cerner:connectivity_engine_4_firmware:*