Description
There is a debug-interface vulnerability on some Tenda routers (FH1202/F1202/F1200: versions before 1.2.0.20). After connecting locally to a router in a wired or wireless manner, one can bypass intended access restrictions by sending shell commands directly and reading their results, or by entering shell commands that change this router's username and password.
Published: 2017-05-21
Score: 8.0 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2017-18076 There is a debug-interface vulnerability on some Tenda routers (FH1202/F1202/F1200: versions before 1.2.0.20). After connecting locally to a router in a wired or wireless manner, one can bypass intended access restrictions by sending shell commands directly and reading their results, or by entering shell commands that change this router's username and password.
References
History

No history.

Subscriptions

Tendacn F1200 F1200 Firmware F1202 F1202 Firmware Fh1202 Fh1202 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-09-17T02:53:16.805Z

Reserved: 2017-05-21T00:00:00.000Z

Link: CVE-2017-9138

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2017-05-21T22:29:00.180

Modified: 2025-04-20T01:37:25.860

Link: CVE-2017-9138

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses