All-Line Equipment Company Fuel-Boss
Brief
View CSAF
Summary
Successful exploitation of these vulnerabilities could allow attackers to execute arbitrary commands or code remotely on affected systems. The following versions of All-Line Equipment Company Fuel-Boss are affected: Fuel-Boss V1 Standard =
- =
- =
- =
- =
- =
- =
- =
- =
- =
- =
- =
- =PHP_7.1.5_7.1.5
Product Status:
known_affected Remediations Vendor fix Fixes are available for the Fuel-Boss V1 Standard and Fuel-Boss V1 Portal. Please contact All-Line Equipment Company (866-356-3336) for instructions on how to receive these fixes. Vendor fix Fixes are not yet available for the Fuel-Boss V1 Master/Slave. Vendor fix No fix is planned for Fuel-Boss V1 Backflush Systems.
Mitigation All-Line Equipment Company recommends either taking products that are not fixed off the Internet or restricting the IP addresses that can access them at the router level.
