seowonintech Vulnerabilities and Affected Products
Explore source-attributed vulnerabilities associated with seowonintech products.
Products
- slc-130_firmware1 vulnerability
- swr-300a_firmware1 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2020-17456CRITICAL | seowonintech slc-130_firmware Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')SEOWON INTECH SLC-130 And SLR-120S devices allow Remote Code Execution via the ipAddr parameter to the system_log.cgi page. | CVSS9.8v3.1 | EPSS73.6% | PoCs2 | SignalsNot listed in CISA KEVNo known ransomware use1 Nuclei template | STIX |
CVE-2016-10760CRITICAL | seowonintech swr-300a_firmware Improper Neutralization of Special Elements used in a Command ('Command Injection')On Seowon Intech routers, there is a Command Injection vulnerability in diagnostic.cgi via shell metacharacters in the ping_ipaddr parameter. CWE-77Jun 11, 2019 | CVSS9.8v3.0 | EPSS3.23% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |