Record summary

CVE-2023-26609 has a selected CVSS score of 7.2 (high); EIP currently links 1 catalogued exploit and 1 repository PoC.

Description

ABUS TVIP 20000-21150 devices allows remote attackers to execute arbitrary code via shell metacharacters in the /cgi-bin/mft/wireless_mft ap field.

Description source: CVE List

Exploitation context

Known exploitation

VulnCheck KEV
Listed · Jul 12, 2015 · VulnCheck
Reported exploitation
Observed · VulnCheck

Available material

Catalogued exploits
1
Repository PoCs
1

CISA SSVC decision

ExploitationPoC
AutomatableNo
Technical impactTotal

CISA Coordinator · SSVC 2.0.3 · Evaluated Apr 23, 2025 · Source: CVE List

Affected products and versions

1
ProductSourceVersion rangeStatus
VulnCheckVersion data not supplied

Proofs of concept

2

Catalogued exploits

ExploitDBABUS Security Camera TVIP 20000-21150 - LFI_ RCE and SSH Root AccessExploitDB exploitby d1g@segfault.netNot analyzed1 file
ExploitDB

PoC details

Repository PoCs

GitHubD1G17/CVE-2023-26609Repository PoCby D1G17Stars: 0Not analyzed2 files

4.6 KiB

GitHub

PoC details

References

4