Lucene search

K
cvelistMitreCVELIST:CVE-2017-17867
HistoryJan 04, 2018 - 7:00 p.m.

CVE-2017-17867

2018-01-0419:00:00
mitre
www.cve.org
6

AI Score

8.8

Confidence

High

EPSS

0.061

Percentile

93.5%

Inteno iopsys 2.0-3.14 and 4.0 devices allow remote authenticated users to execute arbitrary OS commands by modifying the leasetrigger field in the odhcpd configuration to specify an arbitrary program, as demonstrated by a program located on an SMB share. This issue existed because the /etc/uci-defaults directory was not being used to secure the OpenWrt configuration.

AI Score

8.8

Confidence

High

EPSS

0.061

Percentile

93.5%

Related for CVELIST:CVE-2017-17867