CVE-2018-14712: Buffer Overflow
Published May 13, 2019
·Updated
Buffer overflow in appGet.cgi on ASUS RT-AC3200 version 3.0.0.4.382.50010 allows attackers to inject system commands via the "hook" URL parameter.
Affected Software
2 affected components
ASUS Rt-ac3200 Firmware=3.0.0.4.382.50010
ASUS RT-AC3200
Event History
May 13, 2019
CVE Published
via MITRE·12:21 PM
Data Sourced
via MITRE·12:21 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this vulnerability?
The vulnerability ID of this vulnerability is CVE-2018-14712.
2
What is the severity of CVE-2018-14712?
The severity of CVE-2018-14712 is medium.
3
How does CVE-2018-14712 affect ASUS RT-AC3200 version 3.0.0.4.382.50010?
CVE-2018-14712 allows attackers to inject system commands via the "hook" URL parameter.
4
What is the CWE ID of CVE-2018-14712?
The CWE ID of CVE-2018-14712 is 119.
5
Is ASUS RT-AC3200 version 3.0.0.4.382.50010 vulnerable to CVE-2018-14712?
Yes, ASUS RT-AC3200 version 3.0.0.4.382.50010 is vulnerable to CVE-2018-14712.