Vulnerability Details CVE-2020-29379
An issue was discovered on V-SOL V1600D4L V1.01.49 and V1600D-MINI V1.01.48 OLT devices. During the process of updating the firmware, the update script starts a telnetd -l /bin/sh process that does not require authentication for TELNET access.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 15.0%
CVSS Severity
CVSS v3 Score 5.5
CVSS v2 Score 2.1
Products affected by CVE-2020-29379
-
cpe:2.3:h:vsolcn:v1600d-mini:-
-
cpe:2.3:h:vsolcn:v1600d4l:-
-
cpe:2.3:o:vsolcn:v1600d-mini_firmware:1.01.48
-
cpe:2.3:o:vsolcn:v1600d4l_firmware:1.01.49