Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fr48-wfw6-fwg7

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Improper validation of integrity check value vulnerability in NEC Aterm WF1200CR firmware Ver1.3.2 and earlier, Aterm WG1200CR firmware Ver1.3.3 and earlier, and Aterm WG2600HS firmware Ver1.5.1 and earlier allows an attacker with an administrative privilege to execute arbitrary OS commands by sending a specially crafted request to a specific URL.

Improper validation of integrity check value vulnerability in NEC Aterm WF1200CR firmware Ver1.3.2 and earlier, Aterm WG1200CR firmware Ver1.3.3 and earlier, and Aterm WG2600HS firmware Ver1.5.1 and earlier allows an attacker with an administrative privilege to execute arbitrary OS commands by sending a specially crafted request to a specific URL.

EPSS

Процентиль: 49%
0.00256
Низкий

Дефекты

CWE-354

Связанные уязвимости

CVSS3: 7.2
nvd
почти 5 лет назад

Improper validation of integrity check value vulnerability in NEC Aterm WF1200CR firmware Ver1.3.2 and earlier, Aterm WG1200CR firmware Ver1.3.3 and earlier, and Aterm WG2600HS firmware Ver1.5.1 and earlier allows an attacker with an administrative privilege to execute arbitrary OS commands by sending a specially crafted request to a specific URL.

EPSS

Процентиль: 49%
0.00256
Низкий

Дефекты

CWE-354