CVE-2016-10178

An issue was discovered on the D-Link DWR-932B router. HELODBG on port 39889 (UDP) launches the "/sbin/telnetd -l /bin/sh" command.
References
Link Resource
http://www.securityfocus.com/bid/95877 Third Party Advisory VDB Entry
https://pierrekim.github.io/blog/2016-09-28-dlink-dwr-932b-lte-routers-vulnerabilities.html Exploit Technical Description Third Party Advisory
http://www.securityfocus.com/bid/95877 Third Party Advisory VDB Entry
https://pierrekim.github.io/blog/2016-09-28-dlink-dwr-932b-lte-routers-vulnerabilities.html Exploit Technical Description Third Party Advisory
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:dlink:dwr-932b_firmware:02.02eu:revb:*:*:*:*:*:*
cpe:2.3:h:dlink:dwr-932b:-:*:*:*:*:*:*:*

History

21 Nov 2024, 02:43

Type Values Removed Values Added
References () http://www.securityfocus.com/bid/95877 - Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/95877 - Third Party Advisory, VDB Entry
References () https://pierrekim.github.io/blog/2016-09-28-dlink-dwr-932b-lte-routers-vulnerabilities.html - Exploit, Technical Description, Third Party Advisory () https://pierrekim.github.io/blog/2016-09-28-dlink-dwr-932b-lte-routers-vulnerabilities.html - Exploit, Technical Description, Third Party Advisory

Information

Published : 2017-01-30 04:59

Updated : 2024-11-21 02:43


NVD link : CVE-2016-10178

Mitre link : CVE-2016-10178

CVE.ORG link : CVE-2016-10178


JSON object : View

Products Affected

dlink

  • dwr-932b
  • dwr-932b_firmware
CWE
CWE-254

7PK - Security Features