NEC Aterm devices (Aterm WF1200CR firmware Ver1.3.2 and earlier, Aterm WG1200CR firmware Ver1.3.3 and earlier, and Aterm WG2600HS firmware Ver1.5.1 and earlier) allow authenticated attackers to execute arbitrary OS commands by sending a specially crafted request to a specific URL.
Advisories
Source ID Title
EUVD EUVD EUVD-2021-8123 NEC Aterm devices (Aterm WF1200CR firmware Ver1.3.2 and earlier, Aterm WG1200CR firmware Ver1.3.3 and earlier, and Aterm WG2600HS firmware Ver1.5.1 and earlier) allow authenticated attackers to execute arbitrary OS commands by sending a specially crafted request to a specific URL.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: jpcert

Published:

Updated: 2024-08-03T17:53:21.266Z

Reserved: 2020-12-17T00:00:00

Link: CVE-2021-20708

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-04-26T01:15:07.947

Modified: 2024-11-21T05:47:03.053

Link: CVE-2021-20708

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.