What the vulnerability does

01Description

Acemanager in ALEOS before version 4.16 allows a user with valid credentials to manipulate the IP logging operation to execute arbitrary shell commands on the device.

Key dates

02Disclosure timeline

February 10, 2023 CVE published
March 24, 2025 Record updated