CVE-2018-16195
Summary
| CVE | CVE-2018-16195 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2019-01-09 23:29:00 UTC |
| Updated | 2019-01-17 19:43:00 UTC |
| Description | Aterm WF1200CR and Aterm WG1200CR (Aterm WF1200CR firmware Ver1.1.1 and earlier, Aterm WG1200CR firmware Ver1.0.1 and earlier) allows an attacker on the same network segment to execute arbitrary OS commands via SOAP interface of UPnP. |
Risk And Classification
Problem Types: CWE-78
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Nec | Aterm Wf1200cr | - | All | All | All |
| Hardware | Nec | Aterm Wf1200cr | - | All | All | All |
| Operating System | Nec | Aterm Wf1200cr Firmware | All | All | All | All |
| Hardware | Nec | Aterm Wg1200cr | - | All | All | All |
| Hardware | Nec | Aterm Wg1200cr | - | All | All | All |
| Operating System | Nec | Aterm Wg1200cr Firmware | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| NV18-021: NEC製品セキュリティ情報 | NEC | MISC | jpn.nec.com | Vendor Advisory |
| JVN#87535892: Multiple vulnerabilities in Aterm WF1200CR and Aterm WG1200CR | JVN | jvn.jp | Third Party Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.