10
CVSSv2

CVE-2014-8361

Published: 01/05/2015 Updated: 05/09/2023
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The miniigd SOAP service in Realtek SDK allows remote malicious users to execute arbitrary code via a crafted NewInternalClient request, as exploited in the wild up to and including 2023.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

dlink dir-905l_firmware

dlink dir-605l_firmware

dlink dir-600l_firmware

realtek realtek sdk -

dlink dir-619l_firmware

dlink dir-809_firmware

Exploits

## # This module requires Metasploit: metasploitcom/download # Current source: githubcom/rapid7/metasploit-framework ## require 'msf/core' class Metasploit3 < Msf::Exploit::Remote Rank = NormalRanking include Msf::Exploit::Remote::HttpClient include Msf::Exploit::CmdStager include REXML def initialize(info = {}) ...

Github Repositories

애니게이트사의 WN-5200Q 공유기 분석

AnyGate 공유기 분석 이 프로젝트는 AnyGate의 WN5200Q을 분석합니다 하드웨어 CPU: RTL8196E RAM: 16MB ROM: 4MB 특이한 점 WN5200Q인데 내부적으로 RG5200R으로 모델네임을 사용함 소프트웨어 UART Baud Rate:38400 계정이름: root 비밀번호: 웹 UI 비밀번호와 동일(없는 경우 admin) 사용 소프트웨어 Linux 버전: 알 수

Recent Articles

Threat Landscape for Industrial Automation Systems in H2 2017
Securelist • Kaspersky Lab ICS CERT • 26 Mar 2018

For many years, Kaspersky Lab experts have been uncovering and researching cyberthreats that target a variety of information systems – those of commercial and government organizations, banks, telecoms operators, industrial enterprises, and individual users. In this report, Kaspersky Lab Industrial Control Systems Cyber Emergency Response Team (Kaspersky Lab ICS CERT) publishes the findings of its research on the threat landscape for industrial automation systems conducted during the second hal...