Description
Command Injection in the Ping Module in the Web Interface on Technicolor TD5336 OI_Fw_v7 devices allows remote attackers to execute arbitrary OS commands as root via shell metacharacters in the pingAddr parameter to mnt_ping.cgi.
Published: 2017-09-04
Score: 9.8 Critical
EPSS: 13.5% Moderate
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

No history.

Subscriptions

Technicolor Td5336 Td5336 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-05T19:20:39.906Z

Reserved: 2017-09-04T00:00:00.000Z

Link: CVE-2017-14127

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2017-09-04T20:29:00.290

Modified: 2025-04-20T01:37:25.860

Link: CVE-2017-14127

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses