CVE-2024-31977: Adtran 834-5 Firmware

High severity, CVSS 8.8. EPSS: 1.7% chance of exploitation in the next 30 days.

Adtran 834-5 11.1.0.101-202106231430, and fixed as of SmartOS Version 12.6.3.1, devices allow OS Command Injection via shell metacharacters to the Ping or Traceroute utility.

Affected products

  • Adtran 834-5 Firmware: version 11.1.0.101-202106231430 only
  • Adtran Sdg Smartos: before 12.5.5.1 (fixed in 12.5.5.1)

Published 2024-07-24. Last modified 2026-06-17.