Vulnerability Details CVE-2023-36252
An issue in Ateme Flamingo XL v.3.6.20 and XS v.3.6.5 allows a remote authenticated attacker to execute arbitrary code and cause a denial of service via a the session expiration function.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.012
EPSS Ranking 77.7%
CVSS Severity
CVSS v3 Score 8.8
Products affected by CVE-2023-36252
-
cpe:2.3:h:ateme:flamingo_xl:-
-
cpe:2.3:h:ateme:flamingo_xs:-
-
cpe:2.3:o:ateme:flamingo_xl_firmware:3.6.20
-
cpe:2.3:o:ateme:flamingo_xs_firmware:3.6.5