CVE-2018-19031 Vulnerability Details

  /     /     /  

CVE-2018-19031 Metadata Quick Info

CVE Published: 04/11/2019 | CVE Updated: 05/08/2024 | CVE Year: 2018
Source: 360ST | Vendor: 360 Security Technology, Inc. | Product: 360 Safe Router
Status : PUBLISHED

CVE-2018-19031 Description

A command injection vulnerability exists when the authorized user passes crafted parameter to background process in the router. This affects 360 router series products (360 Safe Router P0,P1,P2,P3,P4), the affected version is V2.0.61.58897.

Metrics

CVSS Version: 3.1 | Base Score: n/a
Vector: n/a

l➤ Exploitability Metrics:
    Attack Vector (AV)*
    Attack Complexity (AC)*
    Privileges Required (PR)*
    User Interaction (UI)*
    Scope (S)*

l➤ Impact Metrics:
    Confidentiality Impact (C)*
    Integrity Impact (I)*
    Availability Impact (A)*

Weakness Enumeration (CWE)

CWE-ID:
CWE Name: Local Code Execution
Source: 360 Security Technology, Inc.

Common Attack Pattern Enumeration and Classification (CAPEC)

CAPEC-ID:
CAPEC Description:


Source: NVD (National Vulnerability Database).