A command injection vulnerability exists when the authorized user passes crafted parameter to background process in the router. This affects 360 router series products (360 Safe Router P0,P1,P2,P3,P4), the affected version is V2.0.61.58897.
References
Link Resource
https://security.360.cn/News/news/id/188.html Vendor Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: 360ST

Published: 2019-11-04T14:42:42

Updated: 2019-11-04T14:42:42

Reserved: 2018-11-06T00:00:00


Link: CVE-2018-19031

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2019-11-04T15:15:11.287

Modified: 2020-08-24T17:37:01.140


Link: CVE-2018-19031

JSON object: View

cve-icon Redhat Information

No data.

CWE