CVE-2020-5636

Aterm SA3500G firmware versions prior to Ver. 3.5.9 allows an attacker with an administrative privilege to send a specially crafted request to a specific URL, which may result in an arbitrary command execution.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:necplatforms:aterm_sa3500g_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:necplatforms:aterm_sa3500g:-:*:*:*:*:*:*:*

Information

Published : 2020-12-13 19:15

Updated : 2020-12-15 11:00


NVD link : CVE-2020-5636

Mitre link : CVE-2020-5636


JSON object : View

CWE
CWE-78

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

Advertisement

dedicated server usa

Products Affected

necplatforms

  • aterm_sa3500g
  • aterm_sa3500g_firmware