|
246921
|
7.2 |
HIGH
Network
|
nec
|
aterm_hc100rc_firmware
|
Aterm HC100RC Ver1.0.1 and earlier allows attacker with administrator rights to execute arbitrary OS commands via tools_firmware.cgi date parameter, time parameter, and offset parameter.
|
CWE-78
OS Command
|
CVE-2018-0639
|
2024-11-21 12:38 |
2019-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246922
|
7.2 |
HIGH
Network
|
nec
|
aterm_hc100rc_firmware
|
Aterm HC100RC Ver1.0.1 and earlier allows attacker with administrator rights to execute arbitrary OS commands via import.cgi encKey parameter.
|
CWE-78
OS Command
|
CVE-2018-0638
|
2024-11-21 12:38 |
2019-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246923
|
7.2 |
HIGH
Network
|
nec
|
aterm_hc100rc_firmware
|
Aterm HC100RC Ver1.0.1 and earlier allows attacker with administrator rights to execute arbitrary OS commands via export.cgi encKey parameter.
|
CWE-78
OS Command
|
CVE-2018-0637
|
2024-11-21 12:38 |
2019-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246924
|
7.2 |
HIGH
Network
|
nec
|
aterm_hc100rc_firmware
|
Aterm HC100RC Ver1.0.1 and earlier allows attacker with administrator rights to execute arbitrary OS commands via FactoryPassword parameter of a certain URL, different URL from CVE-2018-0634.
|
CWE-78
OS Command
|
CVE-2018-0636
|
2024-11-21 12:38 |
2019-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246925
|
7.2 |
HIGH
Network
|
nec
|
aterm_hc100rc_firmware
|
Aterm HC100RC Ver1.0.1 and earlier allows attacker with administrator rights to execute arbitrary OS commands via filename parameter.
|
CWE-78
OS Command
|
CVE-2018-0635
|
2024-11-21 12:38 |
2019-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246926
|
7.2 |
HIGH
Network
|
nec
|
aterm_hc100rc_firmware
|
Aterm HC100RC Ver1.0.1 and earlier allows attacker with administrator rights to execute arbitrary OS commands via FactoryPassword parameter or bootmode parameter of a certain URL.
|
CWE-78
OS Command
|
CVE-2018-0634
|
2024-11-21 12:38 |
2019-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246927
|
7.2 |
HIGH
Network
|
nec
|
aterm_w300p_firmware
|
Buffer overflow in Aterm W300P Ver1.0.13 and earlier allows attacker with administrator rights to execute arbitrary code via submit-url parameter.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-0633
|
2024-11-21 12:38 |
2019-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246928
|
7.2 |
HIGH
Network
|
nec
|
aterm_w300p_firmware
|
Buffer overflow in Aterm W300P Ver1.0.13 and earlier allows attacker with administrator rights to execute arbitrary code via HTTP request and response.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-0632
|
2024-11-21 12:38 |
2019-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246929
|
7.2 |
HIGH
Network
|
nec
|
aterm_w300p_firmware
|
Aterm W300P Ver1.0.13 and earlier allows attacker with administrator rights to execute arbitrary OS commands via targetAPSsid parameter.
|
CWE-78
OS Command
|
CVE-2018-0631
|
2024-11-21 12:38 |
2019-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246930
|
7.2 |
HIGH
Network
|
nec
|
aterm_w300p_firmware
|
Aterm W300P Ver1.0.13 and earlier allows attacker with administrator rights to execute arbitrary OS commands via sysCmd parameter.
|
CWE-78
OS Command
|
CVE-2018-0630
|
2024-11-21 12:38 |
2019-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|