7.9
CVSSv2

CVE-2014-0356

Published: 15/04/2014 Updated: 15/04/2014
CVSS v2 Base Score: 7.9 | Impact Score: 10 | Exploitability Score: 5.5
VMScore: 703
Vector: AV:A/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

The ZyXEL Wireless N300 NetUSB NBG-419N router with firmware 1.00(BFQ.6)C0 allows remote malicious users to execute arbitrary code via shell metacharacters in input to the (1) detectWeather, (2) set_language, (3) SystemCommand, or (4) NTPSyncWithHost function in management.c, or a (5) SET COUNTRY, (6) SET WLAN SSID, (7) SET WLAN CHANNEL, (8) SET WLAN STATUS, or (9) SET WLAN COUNTRY udps command.

Vulnerable Product Search on Vulmon Subscribe to Product

zyxel n300_netusb_nbg-419n_firmware 1.00\\(bfq_6\\)c0

zyxel n300_netusb_nbg-419n -