René Helmke 7791f18b51 bootstrap
2023-05-16 16:09:41 +02:00

311 lines
8.7 KiB
JSON

{
"id": "CVE-2014-8361",
"sourceIdentifier": "cve@mitre.org",
"published": "2015-05-01T15:59:01.287",
"lastModified": "2021-04-09T07:15:12.653",
"vulnStatus": "Modified",
"descriptions": [
{
"lang": "en",
"value": "The miniigd SOAP service in Realtek SDK allows remote attackers to execute arbitrary code via a crafted NewInternalClient request."
},
{
"lang": "es",
"value": "El servicio miniigd SOAP en Realtek SDK permite a atacantes remotos ejecutar c\u00f3digo arbitrario a trav\u00e9s de una solicitud NewInternalClient manipulada."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"accessVector": "NETWORK",
"accessComplexity": "LOW",
"authentication": "NONE",
"confidentialityImpact": "COMPLETE",
"integrityImpact": "COMPLETE",
"availabilityImpact": "COMPLETE",
"baseScore": 10.0
},
"baseSeverity": "HIGH",
"exploitabilityScore": 10.0,
"impactScore": 10.0,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "CWE-20"
}
]
}
],
"configurations": [
{
"operator": "AND",
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:o:d-link:dir-905l_firmware:*:*:*:*:*:*:*:*",
"versionEndIncluding": "1.02",
"matchCriteriaId": "EED9992F-8D3F-4DE9-ADDF-D279DE77B841"
}
]
},
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": false,
"criteria": "cpe:2.3:h:d-link:dir-905l:a1:*:*:*:*:*:*:*",
"matchCriteriaId": "F12409D3-BB04-4C08-9ECD-EF8CD624A026"
}
]
}
]
},
{
"operator": "AND",
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:o:d-link:dir-605l_firmware:*:*:*:*:*:*:*:*",
"versionStartIncluding": "1.00",
"versionEndIncluding": "1.13",
"matchCriteriaId": "DA795364-5195-4DBD-BBB0-9B9F81958632"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:o:d-link:dir-605l_firmware:*:*:*:*:*:*:*:*",
"versionStartIncluding": "2.00",
"versionEndIncluding": "2.04",
"matchCriteriaId": "1A782D45-00AE-41DC-9952-5F61BE3A243A"
}
]
},
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": false,
"criteria": "cpe:2.3:h:d-link:dir-605l:a1:*:*:*:*:*:*:*",
"matchCriteriaId": "433276A9-3B93-4D3C-80B7-10EACA01EC03"
},
{
"vulnerable": false,
"criteria": "cpe:2.3:h:d-link:dir-605l:b1:*:*:*:*:*:*:*",
"matchCriteriaId": "0B3D379D-4645-4666-B844-8DBE507A0A17"
}
]
}
]
},
{
"operator": "AND",
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:o:d-link:dir-600l_firmware:*:*:*:*:*:*:*:*",
"versionStartIncluding": "1.00",
"versionEndIncluding": "1.15",
"matchCriteriaId": "ADB30E7C-7611-4F53-AC8A-DC7AF38DFAEE"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:o:d-link:dir-600l_firmware:*:*:*:*:*:*:*:*",
"versionStartIncluding": "2.00",
"versionEndIncluding": "2.05",
"matchCriteriaId": "550EF494-EB3D-43CC-8E13-E30B16AB4F91"
}
]
},
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": false,
"criteria": "cpe:2.3:h:d-link:dir-600l:a1:*:*:*:*:*:*:*",
"matchCriteriaId": "8567FAB1-0430-419F-ACCB-4BA6258626CD"
},
{
"vulnerable": false,
"criteria": "cpe:2.3:h:d-link:dir-600l:b1:*:*:*:*:*:*:*",
"matchCriteriaId": "2483DBFE-7FAF-4F6A-A19A-56F6B326D34C"
}
]
}
]
},
{
"operator": "AND",
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:realtek:realtek_sdk:-:*:*:*:*:*:*:*",
"matchCriteriaId": "62471288-17B2-4FCA-A673-CC4B24FB6262"
}
]
}
]
},
{
"operator": "AND",
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:o:d-link:dir-619l_firmware:*:*:*:*:*:*:*:*",
"versionStartIncluding": "1.00",
"versionEndIncluding": "1.15",
"matchCriteriaId": "F6CC14FA-DEF6-422A-994E-09C412B401FD"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:o:d-link:dir-619l_firmware:*:*:*:*:*:*:*:*",
"versionStartIncluding": "2.00",
"versionEndIncluding": "2.03",
"matchCriteriaId": "A3C0BC2C-8F26-4529-B05F-22E3AEDC2262"
}
]
},
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": false,
"criteria": "cpe:2.3:h:d-link:dir-619l:a1:*:*:*:*:*:*:*",
"matchCriteriaId": "93C416D7-C52B-4733-85BA-07DF39217C0B"
},
{
"vulnerable": false,
"criteria": "cpe:2.3:h:d-link:dir-619l:b1:*:*:*:*:*:*:*",
"matchCriteriaId": "555D086B-EFEE-402C-A31D-503CF303A564"
}
]
}
]
},
{
"operator": "AND",
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:o:d-link:dir-809_firmware:*:*:*:*:*:*:*:*",
"versionStartIncluding": "1.00",
"versionEndIncluding": "1.02",
"matchCriteriaId": "F2345F08-843E-4156-98DC-696F94D20034"
}
]
},
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": false,
"criteria": "cpe:2.3:h:d-link:dir-809:a1:*:*:*:*:*:*:*",
"matchCriteriaId": "BFE9422D-50BD-44C9-BAAE-167E73728972"
},
{
"vulnerable": false,
"criteria": "cpe:2.3:h:d-link:dir-809:a2:*:*:*:*:*:*:*",
"matchCriteriaId": "6EB5641A-42E7-4A98-91A4-2688AC78AC98"
}
]
}
]
}
],
"references": [
{
"url": "http://jvn.jp/en/jp/JVN47580234/index.html",
"source": "cve@mitre.org",
"tags": [
"Third Party Advisory"
]
},
{
"url": "http://jvn.jp/en/jp/JVN67456944/index.html",
"source": "cve@mitre.org"
},
{
"url": "http://packetstormsecurity.com/files/132090/Realtek-SDK-Miniigd-UPnP-SOAP-Command-Execution.html",
"source": "cve@mitre.org",
"tags": [
"Third Party Advisory",
"VDB Entry"
]
},
{
"url": "http://securityadvisories.dlink.com/security/publication.aspx?name=SAP10055",
"source": "cve@mitre.org",
"tags": [
"Vendor Advisory"
]
},
{
"url": "http://www.securityfocus.com/bid/74330",
"source": "cve@mitre.org",
"tags": [
"Third Party Advisory",
"VDB Entry"
]
},
{
"url": "http://www.zerodayinitiative.com/advisories/ZDI-15-155/",
"source": "cve@mitre.org",
"tags": [
"Third Party Advisory",
"VDB Entry"
]
},
{
"url": "https://www.exploit-db.com/exploits/37169/",
"source": "cve@mitre.org",
"tags": [
"Third Party Advisory",
"VDB Entry"
]
}
]
}