Toshiba Home gateway HEM-GW16A firmware HEM-GW16A-FW-V1.2.0 and earlier. Toshiba Home gateway HEM-GW26A firmware HEM-GW26A-FW-V1.2.0 and earlier allows an attacker to execute arbitrary OS commands via unspecified vectors.
References
Link | Resource |
---|---|
http://jvn.jp/en/jp/JVN85901441/index.html | Third Party Advisory VDB Entry |
Information
Published : 2017-07-07 06:29
Updated : 2017-07-14 07:45
NVD link : CVE-2017-2237
Mitre link : CVE-2017-2237
JSON object : View
CWE
CWE-78
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
Products Affected
toshiba
- hem-gw26a
- hem-gw16a
- hem-gw26a_firmware
- hem-gw16a_firmware