Products

Showing 2 vulnerabilities on this page

Signals CISA KEV Ransomware Nuclei
seowonintech vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

seowonintech slc-130_firmware Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

SEOWON INTECH SLC-130 And SLR-120S devices allow Remote Code Execution via the ipAddr parameter to the system_log.cgi page.

CWE-78CWE-94Aug 19, 20201 related artifact
CVSS9.8v3.1EPSS73.6%PoCs2SignalsNot listed in CISA KEVNo known ransomware use1 Nuclei templateSTIX

seowonintech swr-300a_firmware Improper Neutralization of Special Elements used in a Command ('Command Injection')

On Seowon Intech routers, there is a Command Injection vulnerability in diagnostic.cgi via shell metacharacters in the ping_ipaddr parameter.

CWE-77Jun 11, 2019
CVSS9.8v3.0EPSS3.23%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX