CVE-2020-17456
Summary
| CVE | CVE-2020-17456 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-08-20 01:17:00 UTC |
| Updated | 2022-04-22 16:02:00 UTC |
| Description | SEOWON INTECH SLC-130 And SLR-120S devices allow Remote Code Execution via the ipAddr parameter to the system_log.cgi page. |
Risk And Classification
Problem Types: CWE-78
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Seowonintech | Slc-130 | - | All | All | All |
| Hardware | Seowonintech | Slc-130 | - | All | All | All |
| Operating System | Seowonintech | Slc-130 Firmware | - | All | All | All |
| Operating System | Seowonintech | Slc-130 Firmware | - | All | All | All |
| Hardware | Seowonintech | Slr-120d42g | - | All | All | All |
| Operating System | Seowonintech | Slr-120d42g Firmware | All | All | All | All |
| Hardware | Seowonintech | Slr-120s | - | All | All | All |
| Hardware | Seowonintech | Slr-120s | - | All | All | All |
| Hardware | Seowonintech | Slr-120s42g | - | All | All | All |
| Operating System | Seowonintech | Slr-120s42g Firmware | All | All | All | All |
| Operating System | Seowonintech | Slr-120s Firmware | - | All | All | All |
| Operating System | Seowonintech | Slr-120s Firmware | - | All | All | All |
| Hardware | Seowonintech | Slr-120t42g | - | All | All | All |
| Operating System | Seowonintech | Slr-120t42g Firmware | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| GitHub - TAPESH-TEAM/CVE-2020-17456-Seowon-SLR-120S42G-RCE-Exploit-Unauthenticated: Seowon SLR-120S42G RCE Exploit / Remote Code Execution (Unauthenticated) | MISC | github.com | |
| Seowon SLC-130 And SLR-120S Router-RCE Exploit + Unlocking method ( CVE-2020-17456 ) | Seowon-SlC-130-And-SLR-120S-Exploit | MISC | maj0rmil4d.github.io | Exploit, Third Party Advisory |
| Seowon SlC 130 Router Remote Code Execution ≈ Packet Storm | MISC | packetstormsecurity.com | Third Party Advisory |
| Seowon SLR-120 Router Remote Code Execution ≈ Packet Storm | MISC | packetstormsecurity.com | |
| Seowon SLR-120 Router - Remote Code Execution (Unauthenticated) - Hardware remote Exploit | MISC | www.exploit-db.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.