First published: Wed Jan 09 2019(Updated: )
Aterm HC100RC Ver1.0.1 and earlier allows attacker with administrator rights to execute arbitrary OS commands via export.cgi encKey parameter.
Credit: vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
Nec Aterm Hc100rc Firmware | <=1.0.1 | |
Nec Aterm Hc100rc |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-0637 has been rated as a medium severity vulnerability due to its potential to allow unauthorized remote command execution.
To mitigate CVE-2018-0637, it is recommended to update the Aterm HC100RC firmware to a version later than 1.0.1.
The vulnerability CVE-2018-0637 affects users of Aterm HC100RC devices running firmware version 1.0.1 and earlier.
CVE-2018-0637 can be exploited by an attacker with administrator rights to execute arbitrary OS commands on the device.
The impact of CVE-2018-0637 includes potential unauthorized access, data manipulation, or system compromise through command execution.