CVE-2023-27826
Summary
| CVE | CVE-2023-27826 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-04-12 13:15:00 UTC |
| Updated | 2023-04-19 19:31:00 UTC |
| Description | SeowonIntech SWC 5100W WIMAX Bootloader 1.18.19.0, HW 0.0.7.0, and FW 1.11.0.1, 1.9.9.4 are vulnerable to OS Command Injection. which allows attackers to take over the system with root privilege by abusing doSystem() function. |
Risk And Classification
Problem Types: CWE-78
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Seowonintech | Swc-5100w | - | All | All | All |
| Operating System | Seowonintech | Swc-5100w Firmware | 1.11.0.1 | All | All | All |
| Operating System | Seowonintech | Swc-5100w Firmware | 1.9.9.4 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| WIMAX SWC-5100W Firmware V(1.11.0.1 :1.9.9.4) - Authenticated RCE - Hardware remote Exploit | MISC | www.exploit-db.com | Exploit, Third Party Advisory, VDB Entry |
| pastebin.com/raw/buhVV7iL | MISC | pastebin.com | Exploit, Third Party Advisory |
| Access denied | MISC | usermanual.wiki | Product |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.