CVE-2019-3921

The Alcatel Lucent I-240W-Q GPON ONT using firmware version 3FE54567BOZJ19 is vulnerable to a stack buffer overflow via crafted HTTP POST request sent by a remote, authenticated attacker to /GponForm/usb_Form?script/. An attacker can leverage this vulnerability to potentially execute arbitrary code.
References
Link Resource
https://www.tenable.com/security/research/tra-2019-09 Exploit Third Party Advisory
https://www.exploit-db.com/exploits/46469/ Exploit Third Party Advisory
Configurations

Configuration 1


Information

Published : 2019-03-05 09:29

Updated : 2020-10-19 05:53


NVD link : CVE-2019-3921

Mitre link : CVE-2019-3921

Products Affected
CWE