CVE-2018-0629

Severity CVSS v4.0:
Pending analysis
Type:
CWE-78 OS Command Injections
Publication date:
09/01/2019
Last modified:
17/01/2019

Description

Aterm W300P Ver1.0.13 and earlier allows attacker with administrator rights to execute arbitrary OS commands via HTTP request and response.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:nec:aterm_w300p_firmware:*:*:*:*:*:*:*:* 1.0.13 (including)
cpe:2.3:h:nec:aterm_w300p:-:*:*:*:*:*:*:*