CVE-2007-3010: listed in the CISA KEV catalog CVE-2007-3010 · CVSS 9.8 CRITICAL · EPSS 97% · KEV 2022-04-15
masterCGI in the Unified Maintenance Tool in Alcatel OmniPCX Enterprise Communication Server R7.1 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the user parameter during a ping action.
Is CVE-2007-3010 exploited? Listed in the CISA KEV catalog on 2022-04-15. Federal remediation due 2022-05-06. Past that date by 1562 days. EPSS puts exploitation in the next 30 days at 97%. Public exploit code: packaged in a public tool. Public detection rules exist. Which products and versions are affected? No affected package list recorded here yet.
Is there a patch? No patch identifier recorded here yet.
What PlainSec published about CVE-2007-3010 Primary sources What this record does not say No affected package data. No patch identifier. KEV and EPSS are re-checked daily. Record last updated 2026-08-15.
CVE-2007-3010: listed in the CISA KEV catalog CVE-2007-3010 · CVSS 9.8 CRITICAL · EPSS 97% · KEV 2022-04-15
masterCGI in the Unified Maintenance Tool in Alcatel OmniPCX Enterprise Communication Server R7.1 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the user parameter during a ping action.
Is CVE-2007-3010 exploited? Listed in the CISA KEV catalog on 2022-04-15. Federal remediation due 2022-05-06. Past that date by 1562 days. EPSS puts exploitation in the next 30 days at 97%. Public exploit code: packaged in a public tool. Public detection rules exist. Which products and versions are affected? No affected package list recorded here yet.
Is there a patch? No patch identifier recorded here yet.
What PlainSec published about CVE-2007-3010 Primary sources What this record does not say No affected package data. No patch identifier. KEV and EPSS are re-checked daily. Record last updated 2026-08-15.