Improper neutralization of special elements used in an OS command ('OS Command Injection') issue exists in Mesh Wi-Fi router RP562B firmware version v1.0.2 and earlier. If this vulnerability is exploited, a network-adjacent authenticated attacker may execute an arbitrary OS command.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://jvn.jp/en/vu/JVNVU90676195/ |
History
Tue, 12 Nov 2024 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Softbank
Softbank mesh Wi-fi Router Rp562b Firmware |
|
CPEs | cpe:2.3:o:softbank:mesh_wi-fi_router_rp562b_firmware:*:*:*:*:*:*:*:* | |
Vendors & Products |
Softbank
Softbank mesh Wi-fi Router Rp562b Firmware |
|
Metrics |
ssvc
|
Tue, 12 Nov 2024 05:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Improper neutralization of special elements used in an OS command ('OS Command Injection') issue exists in Mesh Wi-Fi router RP562B firmware version v1.0.2 and earlier. If this vulnerability is exploited, a network-adjacent authenticated attacker may execute an arbitrary OS command. | |
Weaknesses | CWE-78 | |
References |
| |
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: jpcert
Published: 2024-11-12T05:30:29.574Z
Updated: 2024-11-12T14:40:50.726Z
Reserved: 2024-10-30T23:12:16.348Z
Link: CVE-2024-45827
Vulnrichment
Updated: 2024-11-12T14:40:44.249Z
NVD
Status : Awaiting Analysis
Published: 2024-11-12T06:15:03.820
Modified: 2024-11-12T13:55:21.227
Link: CVE-2024-45827
Redhat
No data.