First published: Fri Feb 21 2020(Updated: )
Aterm WG2600HS firmware Ver1.3.2 and earlier allows an authenticated attacker on the same network segment to execute arbitrary OS commands with root privileges via unspecified vectors.
Credit: vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
NEC Aterm WG2600HS firmware | <=1.3.2 | |
NEC Aterm WG2600HS |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-5534 is a vulnerability in Aterm WG2600HS firmware Ver1.3.2 and earlier that allows an authenticated attacker on the same network segment to execute arbitrary OS commands with root privileges.
CVE-2020-5534 is classified as a high severity vulnerability with a severity value of 8.
An attacker can exploit CVE-2020-5534 by being authenticated on the same network segment and executing arbitrary OS commands with root privileges.
Yes, NEC Aterm WG2600HS firmware version 1.3.2 is affected by CVE-2020-5534.
To fix CVE-2020-5534, update your Aterm WG2600HS firmware to a version later than 1.3.2 as specified in the vendor's security advisory.