In order to exploit this vulnerability, one has to have access to the administrative portal of the router.
No analysis available yet.
No remediation available yet.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-32235 | Firmware in KAON AR2140 routers prior to version 4.2.16 is vulnerable to a shell command injection via sending a crafted request to one of the endpoints. In order to exploit this vulnerability, one has to have access to the administrative portal of the router. |
Mon, 17 Nov 2025 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Firmware in KAON AR2140 routers prior to version 4.2.16 is vulnerable to a shell command injection via sending a crafted request to one of the endpoints. In order to exploit this vulnerability, one has to have access to the administrative portal of the router. | Firmware in KAON AR2140 routers, prior to versions 3.2.50 and 4.2.16, is vulnerable to a shell command injection via sending a crafted request to one of the endpoints. In order to exploit this vulnerability, one has to have access to the administrative portal of the router. |
Fri, 03 Oct 2025 09:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-78 | |
| Metrics |
cvssV4_0
|
Mon, 12 Aug 2024 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Kaongroup
Kaongroup ar2140 Kaongroup ar2140 Firmware |
|
| CPEs | cpe:2.3:h:kaongroup:ar2140:-:*:*:*:*:*:*:* cpe:2.3:o:kaongroup:ar2140_firmware:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Kaongroup
Kaongroup ar2140 Kaongroup ar2140 Firmware |
Thu, 08 Aug 2024 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Kaonmedia
Kaonmedia ar2140 Firmware |
|
| CPEs | cpe:2.3:o:kaonmedia:ar2140_firmware:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Kaonmedia
Kaonmedia ar2140 Firmware |
|
| Metrics |
cvssV3_1
|
Thu, 08 Aug 2024 12:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Firmware in KAON AR2140 routers prior to version 4.2.16 is vulnerable to a shell command injection via sending a crafted request to one of the endpoints. In order to exploit this vulnerability, one has to have access to the administrative portal of the router. | |
| Title | Command injection in KAON AR2140 routers | |
| Weaknesses | CWE-77 | |
| References |
|
Status: PUBLISHED
Assigner: CERT-PL
Published:
Updated: 2025-11-17T16:15:49.160Z
Reserved: 2024-04-11T15:53:39.381Z
Link: CVE-2024-3659
Updated: 2024-08-08T14:08:30.800Z
Status : Modified
Published: 2024-08-08T13:15:13.823
Modified: 2025-11-17T17:15:45.410
Link: CVE-2024-3659
No data.
OpenCVE Enrichment
No data.
EUVD