CVE-2018-12072

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
17/06/2018
Last modified:
03/10/2019

Description

An issue was discovered in Cloud Media Popcorn A-200 03-05-130708-21-POP-411-000 firmware. It is configured to provide TELNET remote access (without a password) that pops a shell as root. If an attacker can connect to port 23 on the device, he can completely compromise it.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:cloudmedia:popcorn_a-200_firmware:03-05-130708-21-pop-411-000_:*:*:*:*:*:*:*
cpe:2.3:h:cloudmedia:popcorn_a-200:*:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools