CVE-2017-2237: OS Command Injection
Toshiba Home gateway HEM-GW16A firmware HEM-GW16A-FW-V1.2.0 and earlier. Toshiba Home gateway HEM-GW26A firmware HEM-GW26A-FW-V1.2.0 and earlier allows an attacker to execute arbitrary OS commands via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-2237?
CVE-2017-2237 has a critical severity rating due to its potential to allow arbitrary OS command execution.
How do I fix CVE-2017-2237?
To fix CVE-2017-2237, update the Toshiba Home gateway firmware to version 1.2.1 or later.
What devices are affected by CVE-2017-2237?
CVE-2017-2237 affects Toshiba Home gateways HEM-GW16A and HEM-GW26A running firmware versions 1.2.0 and earlier.
What are the potential risks associated with CVE-2017-2237?
The risks include unauthorized access and execution of arbitrary commands on the device, leading to possible compromise.
Is CVE-2017-2237 being actively exploited?
As of the latest information, there are indications that CVE-2017-2237 may be targeted by attackers, emphasizing the need for immediate patching.