CVE-2023-41011

Command Execution vulnerability in China Mobile Communications China Mobile Intelligent Home Gateway v.HG6543C4 allows a remote attacker to execute arbitrary code via the shortcut_telnet.cg component.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:chinamobile:intelligent_home_gateway_firmware:hg6543c4:*:*:*:*:*:*:*
cpe:2.3:h:chinamobile:intelligent_home_gateway:-:*:*:*:*:*:*:*

History

19 Sep 2023, 18:17

Type Values Removed Values Added
CPE cpe:2.3:o:chinamobile:intelligent_home_gateway_firmware:hg6543c4:*:*:*:*:*:*:*
cpe:2.3:h:chinamobile:intelligent_home_gateway:-:*:*:*:*:*:*:*
References (MISC) https://github.com/te5tb99/For-submitting/wiki/Command-Execution-Vulnerability-in-China-Mobile-Intelligent-Home-Gateway-HG6543C4 - (MISC) https://github.com/te5tb99/For-submitting/wiki/Command-Execution-Vulnerability-in-China-Mobile-Intelligent-Home-Gateway-HG6543C4 - Exploit, Third Party Advisory
CWE CWE-77
First Time Chinamobile intelligent Home Gateway
Chinamobile intelligent Home Gateway Firmware
Chinamobile
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8

15 Sep 2023, 00:31

Type Values Removed Values Added
New CVE

Information

Published : 2023-09-14 19:16

Updated : 2024-02-28 20:33


NVD link : CVE-2023-41011

Mitre link : CVE-2023-41011

CVE.ORG link : CVE-2023-41011


JSON object : View

Products Affected

chinamobile

  • intelligent_home_gateway
  • intelligent_home_gateway_firmware
CWE
CWE-77

Improper Neutralization of Special Elements used in a Command ('Command Injection')