First published: Mon Dec 14 2020(Updated: )
Aterm SA3500G firmware versions prior to Ver. 3.5.9 allows an attacker with an administrative privilege to send a specially crafted request to a specific URL, which may result in an arbitrary command execution.
Credit: vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
NEC Aterm SA3500G Firmware | <3.5.9 | |
NEC Aterm SA3500G Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-5636 is considered a high severity vulnerability due to the potential for arbitrary command execution.
To fix CVE-2020-5636, update the Aterm SA3500G firmware to version 3.5.9 or later.
CVE-2020-5636 affects users of the NEC Aterm SA3500G firmware versions prior to 3.5.9.
CVE-2020-5636 allows an attacker with administrative privileges to execute arbitrary commands through a crafted request.
CVE-2020-5636 was published on December 11, 2020.