A CWE-494 Download of Code Without Integrity Check vulnerability exists in Easergy T300 (Firmware version 1.5.2 and older) which could allow an attacker to inject data with dangerous content into the firmware and execute arbitrary code on the system.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-28630 | A CWE-494 Download of Code Without Integrity Check vulnerability exists in Easergy T300 (Firmware version 1.5.2 and older) which could allow an attacker to inject data with dangerous content into the firmware and execute arbitrary code on the system. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://www.se.com/ww/en/download/document/SEVD-2020-161-04 |
|
History
No history.
Status: PUBLISHED
Assigner: schneider
Published:
Updated: 2024-08-04T09:33:19.896Z
Reserved: 2020-01-21T00:00:00
Link: CVE-2020-7505
No data.
Status : Modified
Published: 2020-06-16T20:15:15.287
Modified: 2024-11-21T05:37:16.543
Link: CVE-2020-7505
No data.
OpenCVE Enrichment
No data.
EUVD