Lucene search

K
cveMitreCVE-2020-17456
HistoryAug 20, 2020 - 1:17 a.m.

CVE-2020-17456

2020-08-2001:17:13
CWE-78
mitre
web.nvd.nist.gov
95
In Wild
2
cve-2020-17456
seowon intech
slc-130
slr-120s
remote code execution
ipaddr parameter
system_log.cgi page

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

CVSS3

9.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

AI Score

9.6

Confidence

High

EPSS

0.963

Percentile

99.6%

SEOWON INTECH SLC-130 And SLR-120S devices allow Remote Code Execution via the ipAddr parameter to the system_log.cgi page.

Affected configurations

Nvd
Node
seowonintechslc-130Match-
AND
seowonintechslc-130_firmwareMatch-
Node
seowonintechslr-120sMatch-
AND
seowonintechslr-120s_firmwareMatch-
Node
seowonintechslr-120s42gMatch-
AND
seowonintechslr-120s42g_firmware
Node
seowonintechslr-120d42g_firmware
AND
seowonintechslr-120d42gMatch-
Node
seowonintechslr-120t42g_firmware
AND
seowonintechslr-120t42gMatch-
VendorProductVersionCPE
seowonintechslc-130-cpe:2.3:h:seowonintech:slc-130:-:*:*:*:*:*:*:*
seowonintechslc-130_firmware-cpe:2.3:o:seowonintech:slc-130_firmware:-:*:*:*:*:*:*:*
seowonintechslr-120s-cpe:2.3:h:seowonintech:slr-120s:-:*:*:*:*:*:*:*
seowonintechslr-120s_firmware-cpe:2.3:o:seowonintech:slr-120s_firmware:-:*:*:*:*:*:*:*
seowonintechslr-120s42g-cpe:2.3:h:seowonintech:slr-120s42g:-:*:*:*:*:*:*:*
seowonintechslr-120s42g_firmware*cpe:2.3:o:seowonintech:slr-120s42g_firmware:*:*:*:*:*:*:*:*
seowonintechslr-120d42g_firmware*cpe:2.3:o:seowonintech:slr-120d42g_firmware:*:*:*:*:*:*:*:*
seowonintechslr-120d42g-cpe:2.3:h:seowonintech:slr-120d42g:-:*:*:*:*:*:*:*
seowonintechslr-120t42g_firmware*cpe:2.3:o:seowonintech:slr-120t42g_firmware:*:*:*:*:*:*:*:*
seowonintechslr-120t42g-cpe:2.3:h:seowonintech:slr-120t42g:-:*:*:*:*:*:*:*

Social References

More

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

CVSS3

9.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

AI Score

9.6

Confidence

High

EPSS

0.963

Percentile

99.6%