CVE-2024-11013: Nec Univerge Ix
High severity, CVSS 7.2. EPSS: 1.1% chance of exploitation in the next 30 days.
Command Injection vulnerability in NEC Corporation UNIVERGE IX from Ver9.2 to Ver10.10.21, for Ver10.8 up to Ver10.8.27, for Ver10.9 up to Ver10.9.14 and UNIVERGE IX-R/IX-V Ver1.2.15 and earlier allows a attacker to inject an arbitrary CLI commands to be executed on the device via the management interface.
Affected products
- Nec Univerge Ix: from 9.2, up to and including 10.10.21; from 10.8, up to and including 10.8.27; from 10.9, up to and including 10.9.14
- Nec Corporation Univerge Ix
- Nec Corporation Univerge Ix-R/ix-V: up to and including 1.2.15
Published 2024-11-29. Last modified 2026-06-17.