Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2024-28015

EPSS 0.79% · P74
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2024-28015

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Improper Neutralization of Special Elements used in an OS Command vulnerability in NEC Corporation Aterm WG1800HP4, WG1200HS3, WG1900HP2, WG1200HP3, WG1800HP3, WG1200HS2, WG1900HP, WG1200HP2, W1200EX(-MS), WG1200HS, WG1200HP, WF300HP2, W300P, WF800HP, WR8165N, WG2200HP, WF1200HP2, WG1800HP2, WF1200HP, WG600HP, WG300HP, WF300HP, WG1800HP, WG1400HP, WR8175N, WR9300N, WR8750N, WR8160N, WR9500N, WR8600N, WR8370N, WR8170N, WR8700N, WR8300N, WR8150N, WR4100N, WR4500N, WR8100N, WR8500N, CR2500P, WR8400N, WR8200N, WR1200H, WR7870S, WR6670S, WR7850S, WR6650S, WR6600H, WR7800H, WM3400RN, WM3450RN, WM3500R, WM3600R, WM3800R, WR8166N, MR01LN MR02LN, WG1810HP(JE) and WG1810HP(MF) all versions allows a attacker to execute an arbitrary OS command with the root privilege via the internet.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
OS命令中使用的特殊元素转义处理不恰当(OS命令注入)
Source: NVD (National Vulnerability Database)
Vulnerability Title
NEC Corporation Aterm 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
NEC Aterm是日本电气(NEC)公司的一个无线路由器。 NEC Corporation Aterm存在安全漏洞,该漏洞源于对使用的特殊元素中和不当。以下产品受到影响:WG1800HP4, WG1200HS3, WG1900HP2, WG1200HP3, WG1800HP3, WG1200HS2, WG1900HP, WG1200HP2, W1200EX(-MS), WG1200HS, WG1200HP, WF300HP2, W300P, WF800HP, WR8165N, WG2200HP, WF1
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
NEC CorporationWG1800HP4 all versions -
NEC CorporationWG1200HS3 all versions -
NEC CorporationWG1900HP2 all versions -
NEC CorporationWG1200HP3 all versions -
NEC CorporationWG1800HP3 all versions -
NEC CorporationWG1200HS2 all versions -
NEC CorporationWG1900HP all versions -
NEC CorporationWG1200HP2 all versions -
NEC CorporationW1200EX(-MS) all versions -
NEC CorporationWG1200HS all versions -
NEC CorporationWG1200HP all versions -
NEC CorporationWF300HP2 all versions -
NEC CorporationW300P all versions -
NEC CorporationWF800HP all versions -
NEC CorporationWR8165N all versions -
NEC CorporationWG2200HP all versions -
NEC CorporationWF1200HP2 all versions -
NEC CorporationWG1800HP2 all versions -
NEC CorporationWF1200HP all versions -
NEC CorporationWG600HP all versions -
NEC CorporationWG300HP all versions -
NEC CorporationWF300HP all versions -
NEC CorporationWG1800HP all versions -
NEC CorporationWG1400HP all versions -
NEC CorporationWR8175N all versions -
NEC CorporationWR9300N all versions -
NEC CorporationWR8750N all versions -
NEC CorporationWR8160N all versions -
NEC CorporationWR9500N all versions -
NEC CorporationWR8600N all versions -
NEC CorporationWR8370N all versions -
NEC CorporationWR8170N all versions -
NEC CorporationWR8700N all versions -
NEC CorporationWR8300N all versions -
NEC CorporationWR8150N all versions -
NEC CorporationWR4100N all versions -
NEC CorporationWR4500N all versions -
NEC CorporationWR8100N all versions -
NEC CorporationWR8500N all versions -
NEC CorporationCR2500P all versions -
NEC CorporationWR8400N all versions -
NEC CorporationWR8200N all versions -
NEC CorporationWR1200H all versions -
NEC CorporationWR7870S all versions -
NEC CorporationWR6670S all versions -
NEC CorporationWR7850S all versions -
NEC CorporationWR6650S all versions -
NEC CorporationWR6600H all versions -
NEC CorporationWR7800H all versions -
NEC CorporationWM3400RN all versions -
NEC CorporationWM3450RN all versions -
NEC CorporationWM3500R all versions -
NEC CorporationWM3600R all versions -
NEC CorporationWM3800R all versions -
NEC CorporationWR8166N all versions -
NEC CorporationMR01LN all versions -
NEC CorporationMR02LN all versions -
NEC CorporationWG1810HP(JE) all versions -
NEC CorporationWG1810HP(MF) all versions -

II. Public POCs for CVE-2024-28015

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2024-28015

登录查看更多情报信息。

Same Patch Batch · NEC Corporation · 2024-03-28 · 12 CVEs total

CVE-2024-28005NEC Aterm 安全漏洞
CVE-2024-28006NEC Corporation Aterm 安全漏洞
CVE-2024-28007NEC Corporation Aterm 安全漏洞
CVE-2024-28008NEC Corporation Aterm 安全漏洞
CVE-2024-28009NEC Corporation Aterm 安全漏洞
CVE-2024-28010NEC Corporation Aterm 安全漏洞
CVE-2024-28011NEC Corporation Aterm 安全漏洞
CVE-2024-28012NEC Corporation Aterm 安全漏洞
CVE-2024-28013NEC Corporation Aterm 安全漏洞
CVE-2024-28014NEC Corporation Aterm 安全漏洞
CVE-2024-28016NEC Corporation Aterm 安全漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2024-28015

No comments yet


Leave a comment