CVE-2018-0628: OS Command Injection
Aterm WG1200HP firmware Ver1.0.31 and earlier allows attacker with administrator rights to execute arbitrary OS commands via HTTP request and response.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2018-0628?
CVE-2018-0628 is a vulnerability in the Aterm WG1200HP firmware Ver1.0.31 and earlier that allows an attacker with administrator rights to execute arbitrary OS commands via HTTP request and response.
How severe is CVE-2018-0628?
CVE-2018-0628 has a severity rating of 7.2, which is considered critical.
How can I exploit CVE-2018-0628?
To exploit CVE-2018-0628, an attacker would need administrator rights and could execute arbitrary OS commands via HTTP request and response.
How do I fix CVE-2018-0628?
To fix CVE-2018-0628, NEC recommends updating the Aterm WG1200HP firmware to version 1.0.32 or later.
Is the NEC Aterm WG1200HP vulnerable to CVE-2018-0628?
No, the NEC Aterm WG1200HP is not vulnerable to CVE-2018-0628 as long as it is running firmware version 1.0.32 or later.