CVE-2009-1807

Unspecified vulnerability in Config.dll in Baofeng products 3.09.04.17 and earlier allows remote attackers to execute arbitrary code by calling the SetAttributeValue method, as exploited in the wild in April and May 2009.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:baofeng:storm:*:*:*:*:*:*:*:*
cpe:2.3:a:baofeng:storm:2.7.9_8:*:*:*:*:*:*:*
cpe:2.3:a:baofeng:storm:2.7.9_10:*:*:*:*:*:*:*
cpe:2.3:a:baofeng:storm:2.8:*:*:*:*:*:*:*
cpe:2.3:a:baofeng:storm:2.9:*:*:*:*:*:*:*

History

21 Nov 2024, 01:03

Type Values Removed Values Added
References () http://www.cisrt.org/enblog/read.php?245 - Exploit () http://www.cisrt.org/enblog/read.php?245 - Exploit
References () http://www.vupen.com/english/advisories/2009/1392 - () http://www.vupen.com/english/advisories/2009/1392 -

Information

Published : 2009-05-28 20:30

Updated : 2024-11-21 01:03


NVD link : CVE-2009-1807

Mitre link : CVE-2009-1807

CVE.ORG link : CVE-2009-1807


JSON object : View

Products Affected

baofeng

  • storm