[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248268

 
 

909

 
 

195051

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2014-1982Date: (C)2015-12-16   (M)2023-12-22


The administrative interface in Allied Telesis AT-RG634A ADSL Broadband router 3.3+, iMG624A firmware 3.5, iMG616LH firmware 2.4, and iMG646BD firmware 3.5 allows remote attackers to gain privileges and execute arbitrary commands via a direct request to cli.html.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 10.0
Exploit Score: 10.0
Impact Score: 10.0
 
CVSS V2 Metrics:
Access Vector: NETWORK
Access Complexity: LOW
Authentication: NONE
Confidentiality: COMPLETE
Integrity: COMPLETE
Availability: COMPLETE
  
Reference:
http://seclists.org/fulldisclosure/2014/Mar/340
EXPLOIT-DB-32545

CPE    6
cpe:/h:alliedtelesis:img646bd:-
cpe:/o:alliedtelesis:img646bd_firmware:3.5
cpe:/o:alliedtelesis:img624a_firmware:3.5
cpe:/h:alliedtelesis:at-rg634a:-
...
CWE    1
CWE-287

© SecPod Technologies