NEC Aterm Series OS Command Injection Vulnerability

Vulnerability

An OS command injection vulnerability has been identified in the NEC Aterm Series. This vulnerability allows an attacker to execute arbitrary operating system commands over the network. It affects multiple models within the Aterm Series, all versions.

Impact

Exploitation of this vulnerability could lead to unauthorized execution of operating system commands on the affected device.

Remediation

The remediation process varies by model. Users should refer to the NEC Aterm support pages for their specific model for guidance.

Added: Mar 27, 2026, 12:19 PM
Updated: Mar 27, 2026, 12:19 PM

Vulnerability Rating

Custom Algorithm
spread
4.5
impact
7.5
exploitability
7.0
remediation
6.0
relevance
4.8
threat
0.0
urgency
2.9
incentive
4.2

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.