A command injection vulnerability exists when the authorized user passes crafted parameter to background process in the router. This affects 360 router series products (360 Safe Router P0,P1,P2,P3,P4), the affected version is V2.0.61.58897.
References
Link | Resource |
---|---|
https://security.360.cn/News/news/id/188.html | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: 360ST
Published: 2019-11-04T14:42:42
Updated: 2019-11-04T14:42:42
Reserved: 2018-11-06T00:00:00
Link: CVE-2018-19031
JSON object: View
NVD Information
Status : Analyzed
Published: 2019-11-04T15:15:11.287
Modified: 2020-08-24T17:37:01.140
Link: CVE-2018-19031
JSON object: View
Redhat Information
No data.
CWE