Lucene search

K
cvelistMitreCVELIST:CVE-2017-18372
HistoryMay 02, 2019 - 4:15 p.m.

CVE-2017-18372

2019-05-0216:15:22
mitre
www.cve.org
3

AI Score

8.9

Confidence

High

EPSS

0.221

Percentile

96.5%

The Billion 5200W-T TCLinux Fw $7.3.8.0 v008 130603 router distributed by TrueOnline has a command injection vulnerability in the Time Setting function, which is only accessible by an authenticated user. The vulnerability is in the tools_time.asp page and can be exploited through the uiViewSNTPServer parameter. Authentication can be achieved by exploiting CVE-2017-18373.

AI Score

8.9

Confidence

High

EPSS

0.221

Percentile

96.5%

Related for CVELIST:CVE-2017-18372