There is a debug-interface vulnerability on some Tenda routers (FH1202/F1202/F1200: versions before 1.2.0.20). After connecting locally to a router in a wired or wireless manner, one can bypass intended access restrictions by sending shell commands directly and reading their results, or by entering shell commands that change this router's username and password.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
http://www.tendacn.com/en/2017.html |
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2017-05-21T22:00:00Z
Updated: 2024-09-17T02:53:16.805Z
Reserved: 2017-05-21T00:00:00Z
Link: CVE-2017-9138
Vulnrichment
No data.
NVD
Status : Modified
Published: 2017-05-21T22:29:00.180
Modified: 2024-11-21T03:35:24.573
Link: CVE-2017-9138
Redhat
No data.