ZeroHour

CVE-2018-11240

CVSS 3.0
9.8 critical
EPSS
2%p82
Published
()
Modified
Description

An issue was discovered on SoftCase T-Router build 20112017 devices. There are no restrictions on the 'exec command' feature of the T-Router protocol. If the command syntax is correct, there is code execution both on the other modem and on the main servers. This is fixed in production builds as of Spring 2018.

Vendors
softcase
Products
t-router firmware
Weakness
CWE-732
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.