← volver
CVE-2018-7937

CVE-2018-7937

EPSS 0.8%
Vexday Risk Score
3Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS EPSS 0.8%KEV nãoPoC Nuclei Metasploit Patch
Ciclo de vida
04 sep 2018Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
In Huawei HiRouter-CD20-10 with the versions before 1.9.6 and WS5200-10 with the versions before 1.9.6, there is a plug-in signature bypass vulnerability due to insufficient plug-in verification. An attacker may tamper with a legitimate plug-in to build a malicious plug-in and trick users into installing it. Successful exploit could allow the attacker to obtain the root permission of the device and take full control over the device.

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →