CVE-2017-2236: Critical severity toshiba hem-gw16a vulnerability
Toshiba Home gateway HEM-GW16A firmware HEM-GW16A-FW-V1.2.0 and earlier, Toshiba Home gateway HEM-GW26A firmware HEM-GW26A-FW-V1.2.0 and earlier uses hard-coded credentials, which may allow attackers to perform operations on device with administrative privileges.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-2236?
CVE-2017-2236 is considered a high severity vulnerability due to the use of hard-coded credentials that allow unauthorized access to administrative functions.
How do I fix CVE-2017-2236?
To fix CVE-2017-2236, update the firmware of your Toshiba Home gateway to the latest version that addresses the hard-coded credential issue.
Which devices are affected by CVE-2017-2236?
CVE-2017-2236 affects Toshiba Home gateway models HEM-GW16A and HEM-GW26A with firmware versions up to and including 1.2.0.
What are the potential exploits of CVE-2017-2236?
Potential exploits of CVE-2017-2236 include unauthorized access to the device's administrative interface and control over its functionalities.
Is my Toshiba Home gateway vulnerable if it has firmware version higher than 1.2.0?
No, if your Toshiba Home gateway has a firmware version higher than 1.2.0, it is not vulnerable to CVE-2017-2236.