QID 730378
Date Published: 2022-03-01
QID 730378: Netis WF2419 Remote Code Execution (RCE) Vulnerability
Netis WF2419 is vulnerable to authenticated Remote Code Execution (RCE) as root through the router Web management page.
Affected Versions:
The vulnerability has been found in firmware version V1.2.31805 and V2.2.36123
QID Detection Logic:
This Unauthenticated sends a GET request to the web management page and fetches the vulnerable versions.
Netis WF2419 is vulnerable to authenticated Remote Code Execution (RCE) as root through the router Web management page. After one is connected to this page, it is possible to execute system commands as root through the tracert diagnostic tool because of lack of user input sanitizing.
Solution
There are no vendor supplied patches available for this vulnerability.
As per the vendor page, it says "At the time of the reporting, the model mentioned was already considered to have reach end of life, which means that no fix would be provided for this vulnerability. We would recommend upgrading to a newer device model".
As per the vendor page, it says "At the time of the reporting, the model mentioned was already considered to have reach end of life, which means that no fix would be provided for this vulnerability. We would recommend upgrading to a newer device model".
Vendor References
- NETIS ROUTERS - REMOTE CODE EXECUTION -
www.digital.security/en/blog/netis-routers-remote-code-execution-cve-2019-19356
CVEs related to QID 730378
Software Advisories
| Advisory ID | Software | Component | Link |
|---|