CVE-2016-10760

Severity CVSS v4.0:
Pending analysis
Type:
CWE-77 Command Injection
Publication date:
11/06/2019
Last modified:
12/06/2019

Description

On Seowon Intech routers, there is a Command Injection vulnerability in diagnostic.cgi via shell metacharacters in the ping_ipaddr parameter.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:seowonintech:swr-300a_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:seowonintech:swr-300a:-:*:*:*:*:*:*:*
cpe:2.3:o:seowonintech:swr-300b_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:seowonintech:swr-300b:-:*:*:*:*:*:*:*
cpe:2.3:o:seowonintech:swr-300c_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:seowonintech:swr-300c:-:*:*:*:*:*:*:*
cpe:2.3:o:seowonintech:swr-300bg_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:seowonintech:swr-300bg:-:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools