First published: Sun Jul 03 2016(Updated: )
NTT EAST Hikari Denwa routers with firmware PR-400MI, RT-400MI, and RV-440MI 07.00.1006 and earlier and NTT WEST Hikari Denwa routers with firmware PR-400MI, RT-400MI, and RV-440MI 07.00.1005 and earlier allow remote authenticated users to execute arbitrary OS commands via unspecified vectors.
Credit: vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
Ntt-east Rt-400mi | <=07.00.1006 | |
Ntt-east Rt-400mi Firmware | ||
Ntt-west Pr-400ki | <=07.00.1005 | |
Ntt-west Pr-400mi Firmware | ||
Ntt-west Rt-400mi Firmware | ||
Ntt-west Rt-400mi | <=07.00.1005 | |
Ntt-west Rv-440mi | <=07.00.1005 | |
Ntt-west Rv-440mi Firmware | ||
Ntt-east Pr-400mi | <=07.00.1006 | |
Ntt-east Pr-400mi Firmware | ||
Ntt-east Rv-440mi | <=07.00.1006 | |
Ntt-east Rv-440mi Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-1227 has a critical severity level due to the potential for remote code execution.
To fix CVE-2016-1227, update the firmware of your NTT EAST or NTT WEST Hikari Denwa routers to the latest version.
CVE-2016-1227 affects NTT EAST PR-400MI, RT-400MI, RV-440MI with firmware versions 07.00.1006 and earlier, and NTT WEST PR-400MI, RT-400MI, RV-440MI with firmware versions 07.00.1005 and earlier.
No, CVE-2016-1227 requires remote authenticated users to exploit the vulnerability.
CVE-2016-1227 allows attackers to execute arbitrary operating system commands on the vulnerable routers.