Back

HIGH

Authenticated Remote Code Execution in Kiloview NDI N series products

Published Mar 21, 2024

Description

An OS Command Injection vulnerability in Kiloview NDI allows a low-privileged user to execute arbitrary code remotely on the device with high privileges.

This issue affects Kiloview NDI N3, N3-s, N4, N20, N30, N40 and was fixed in Firmware version 2.02.0227 .

Affected products

Remediation

Vendor solution

Upgrade to the firmware 2.02.0227 or later

References (6)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner NCSC.ch
Published Mar 21, 2024
Updated Aug 27, 2024
Reserved Mar 4, 2024
CISA Vulnrichment
Updated Mar 28, 2024
NVD
Status Deferred
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a