Description
Command Injection in the CPE WAN Management Protocol (CWMP) registration in Amino Communications AK45x series, AK5xx series, AK65x series, Aria6xx series, Aria7/AK7Xx series and Kami7B allows man-in-the-middle attackers to execute arbitrary commands with root level privileges.
Published: 2020-12-29
Score: 8.1 High
EPSS: 3.1% Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2020-2667 Command Injection in the CPE WAN Management Protocol (CWMP) registration in Amino Communications AK45x series, AK5xx series, AK65x series, Aria6xx series, Aria7/AK7Xx series and Kami7B allows man-in-the-middle attackers to execute arbitrary commands with root level privileges.
History

No history.

Subscriptions

Amino Ak45x Ak45x Firmware Ak5xx Ak5xx Firmware Ak65x Ak65x Firmware Aria6xx Aria6xx Firmware Aria7xx Aria7xx Firmware Kami7b Kami7b Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-04T10:58:39.999Z

Reserved: 2020-03-06T00:00:00.000Z

Link: CVE-2020-10209

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-12-30T00:15:12.643

Modified: 2024-11-21T04:54:58.133

Link: CVE-2020-10209

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses