Critical severity9.8NVD Advisory· Published Feb 17, 2020· Updated Jun 17, 2026
CVE-2020-9027
CVE-2020-9027
Description
ELTEX NTP-RG-1402G 1v10 3.25.3.32 devices allow OS command injection via the TRACE field of the resource ping.cmd. The NTP-2 device is also affected.
Affected products
5- cpe:2.3:o:eltex-co:ntp-2_firmware:3.25.1.1226:*:*:*:*:*:*:*
- cpe:2.3:o:eltex-co:ntp-rg-1402g_firmware:3.25.3.32:*:*:*:*:*:*:*
- ELTEX/NTP-RG-1402Gdescription
- Range: 3.25.3.32
Patches
Vulnerability mechanics
References
1- sku11army.blogspot.com/2020/01/eltex-devices-ntp-rg-1402g-ntp-2-os.htmlnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.