Описание
Aterm SA3500G firmware versions prior to Ver. 3.5.9 allows an attacker on the adjacent network to send a specially crafted request to a specific URL, which may result in an arbitrary command execution.
Ссылки
- Third Party Advisory
- Third Party Advisory
- Vendor Advisory
- Third Party Advisory
- Third Party Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 3.5.9 (исключая)
Одновременно
cpe:2.3:o:necplatforms:aterm_sa3500g_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:necplatforms:aterm_sa3500g:-:*:*:*:*:*:*:*
EPSS
Процентиль: 61%
0.00414
Низкий
8.8 High
CVSS3
5.8 Medium
CVSS2
Дефекты
CWE-78
Связанные уязвимости
github
больше 3 лет назад
Aterm SA3500G firmware versions prior to Ver. 3.5.9 allows an attacker on the adjacent network to send a specially crafted request to a specific URL, which may result in an arbitrary command execution.
EPSS
Процентиль: 61%
0.00414
Низкий
8.8 High
CVSS3
5.8 Medium
CVSS2
Дефекты
CWE-78