CVE-2013-2612

CRITICAL

Huawei E587 3G Mobile Hotspot <11.203.27 - Command Injection

Title source: llm
STIX 2.1

Description

Command-injection vulnerability in Huawei E587 3G Mobile Hotspot 11.203.27 allows remote attackers to execute arbitrary shell commands with root privileges due to an error in the Web UI.

References (2)

Core 2
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/85782
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
https://www.securityfocus.com/bid/61167/info

Scores

CVSS v3 9.8
EPSS 0.0572
EPSS Percentile 90.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-78
Status published
Products (1)
huawei/e587_firmware 11.203.27
Published Jan 27, 2020
Tracked Since Feb 18, 2026