Описание
Aterm SA3500G firmware versions prior to Ver. 3.5.9 allows an attacker with an administrative privilege to send a specially crafted request to a specific URL, which may result in an arbitrary command execution.
Ссылки
- Third Party Advisory
- Third Party Advisory
- Vendor Advisory
- Third Party Advisory
- Third Party Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 3.5.9 (исключая)
Одновременно
cpe:2.3:o:necplatforms:aterm_sa3500g_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:necplatforms:aterm_sa3500g:-:*:*:*:*:*:*:*
EPSS
Процентиль: 51%
0.00731
Низкий
6.8 Medium
CVSS3
5.2 Medium
CVSS2
Дефекты
CWE-78
Связанные уязвимости
github
больше 4 лет назад
Aterm SA3500G firmware versions prior to Ver. 3.5.9 allows an attacker with an administrative privilege to send a specially crafted request to a specific URL, which may result in an arbitrary command execution.
EPSS
Процентиль: 51%
0.00731
Низкий
6.8 Medium
CVSS3
5.2 Medium
CVSS2
Дефекты
CWE-78