{"api_version":"1","generated_at":"2026-07-23T14:38:55+00:00","cve":"CVE-2023-27826","urls":{"html":"https://cve.report/CVE-2023-27826","api":"https://cve.report/api/cve/CVE-2023-27826.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2023-27826","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2023-27826"},"summary":{"title":"CVE-2023-27826","description":"SeowonIntech SWC 5100W WIMAX Bootloader 1.18.19.0, HW 0.0.7.0, and FW 1.11.0.1, 1.9.9.4 are vulnerable to OS Command Injection. which allows attackers to take over the system with root privilege by abusing doSystem() function.","state":"PUBLIC","assigner":"cve@mitre.org","published_at":"2023-04-12 13:15:00","updated_at":"2023-04-19 19:31:00"},"problem_types":["CWE-78"],"metrics":[],"references":[{"url":"https://www.exploit-db.com/exploits/51311","name":"https://www.exploit-db.com/exploits/51311","refsource":"MISC","tags":["Exploit","Third Party Advisory","VDB Entry"],"title":"WIMAX SWC-5100W Firmware V(1.11.0.1 :1.9.9.4) - Authenticated RCE - Hardware remote Exploit","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://pastebin.com/raw/buhVV7iL","name":"https://pastebin.com/raw/buhVV7iL","refsource":"MISC","tags":["Exploit","Third Party Advisory"],"title":"","mime":"text/plain","httpstatus":"200","archivestatus":"404"},{"url":"https://usermanual.wiki/SEOWON-INTECH/SWC5100W","name":"https://usermanual.wiki/SEOWON-INTECH/SWC5100W","refsource":"MISC","tags":["Product"],"title":"Access denied","mime":"text/html","httpstatus":"403","archivestatus":"404"},{"url":"https://www.cve.org/CVERecord?id=CVE-2023-27826","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2023-27826","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2023","cve_id":"27826","vulnerable":"-1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"h","cpe4":"seowonintech","cpe5":"swc-5100w","cpe6":"-","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2023","cve_id":"27826","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"seowonintech","cpe5":"swc-5100w_firmware","cpe6":"1.11.0.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2023","cve_id":"27826","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"seowonintech","cpe5":"swc-5100w_firmware","cpe6":"1.9.9.4","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2023-27826","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"SeowonIntech SWC 5100W WIMAX Bootloader 1.18.19.0, HW 0.0.7.0, and FW 1.11.0.1, 1.9.9.4 are vulnerable to OS Command Injection. which allows attackers to take over the system with root privilege by abusing doSystem() function."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"url":"https://pastebin.com/raw/buhVV7iL","refsource":"MISC","name":"https://pastebin.com/raw/buhVV7iL"},{"url":"https://usermanual.wiki/SEOWON-INTECH/SWC5100W","refsource":"MISC","name":"https://usermanual.wiki/SEOWON-INTECH/SWC5100W"},{"refsource":"MISC","name":"https://www.exploit-db.com/exploits/51311","url":"https://www.exploit-db.com/exploits/51311"}]}},"nvd":{"publishedDate":"2023-04-12 13:15:00","lastModifiedDate":"2023-04-19 19:31:00","problem_types":["CWE-78"],"metrics":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":8.8,"baseSeverity":"HIGH"},"exploitabilityScore":2.8,"impactScore":5.9}},"configurations":{"CVE_data_version":"4.0","nodes":[{"operator":"AND","children":[{"operator":"OR","children":[],"cpe_match":[{"vulnerable":true,"cpe23Uri":"cpe:2.3:o:seowonintech:swc-5100w_firmware:1.9.9.4:*:*:*:*:*:*:*","cpe_name":[]},{"vulnerable":true,"cpe23Uri":"cpe:2.3:o:seowonintech:swc-5100w_firmware:1.11.0.1:*:*:*:*:*:*:*","cpe_name":[]}]},{"operator":"OR","children":[],"cpe_match":[{"vulnerable":false,"cpe23Uri":"cpe:2.3:h:seowonintech:swc-5100w:-:*:*:*:*:*:*:*","cpe_name":[]}]}],"cpe_match":[]}]}},"legacy_mitre":{"record":null,"notes":[]}}}