mirror of
https://github.com/fkie-cad/nvd-json-data-feeds.git
synced 2025-05-29 01:31:20 +00:00
311 lines
8.7 KiB
JSON
311 lines
8.7 KiB
JSON
{
|
|
"id": "CVE-2014-8361",
|
|
"sourceIdentifier": "cve@mitre.org",
|
|
"published": "2015-05-01T15:59:01.287",
|
|
"lastModified": "2021-04-09T07:15:12.653",
|
|
"vulnStatus": "Modified",
|
|
"descriptions": [
|
|
{
|
|
"lang": "en",
|
|
"value": "The miniigd SOAP service in Realtek SDK allows remote attackers to execute arbitrary code via a crafted NewInternalClient request."
|
|
},
|
|
{
|
|
"lang": "es",
|
|
"value": "El servicio miniigd SOAP en Realtek SDK permite a atacantes remotos ejecutar c\u00f3digo arbitrario a trav\u00e9s de una solicitud NewInternalClient manipulada."
|
|
}
|
|
],
|
|
"metrics": {
|
|
"cvssMetricV2": [
|
|
{
|
|
"source": "nvd@nist.gov",
|
|
"type": "Primary",
|
|
"cvssData": {
|
|
"version": "2.0",
|
|
"vectorString": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
|
|
"accessVector": "NETWORK",
|
|
"accessComplexity": "LOW",
|
|
"authentication": "NONE",
|
|
"confidentialityImpact": "COMPLETE",
|
|
"integrityImpact": "COMPLETE",
|
|
"availabilityImpact": "COMPLETE",
|
|
"baseScore": 10.0
|
|
},
|
|
"baseSeverity": "HIGH",
|
|
"exploitabilityScore": 10.0,
|
|
"impactScore": 10.0,
|
|
"acInsufInfo": false,
|
|
"obtainAllPrivilege": false,
|
|
"obtainUserPrivilege": false,
|
|
"obtainOtherPrivilege": false,
|
|
"userInteractionRequired": false
|
|
}
|
|
]
|
|
},
|
|
"weaknesses": [
|
|
{
|
|
"source": "nvd@nist.gov",
|
|
"type": "Primary",
|
|
"description": [
|
|
{
|
|
"lang": "en",
|
|
"value": "CWE-20"
|
|
}
|
|
]
|
|
}
|
|
],
|
|
"configurations": [
|
|
{
|
|
"operator": "AND",
|
|
"nodes": [
|
|
{
|
|
"operator": "OR",
|
|
"negate": false,
|
|
"cpeMatch": [
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:d-link:dir-905l_firmware:*:*:*:*:*:*:*:*",
|
|
"versionEndIncluding": "1.02",
|
|
"matchCriteriaId": "EED9992F-8D3F-4DE9-ADDF-D279DE77B841"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"operator": "OR",
|
|
"negate": false,
|
|
"cpeMatch": [
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:d-link:dir-905l:a1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "F12409D3-BB04-4C08-9ECD-EF8CD624A026"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"operator": "AND",
|
|
"nodes": [
|
|
{
|
|
"operator": "OR",
|
|
"negate": false,
|
|
"cpeMatch": [
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:d-link:dir-605l_firmware:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "1.00",
|
|
"versionEndIncluding": "1.13",
|
|
"matchCriteriaId": "DA795364-5195-4DBD-BBB0-9B9F81958632"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:d-link:dir-605l_firmware:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2.00",
|
|
"versionEndIncluding": "2.04",
|
|
"matchCriteriaId": "1A782D45-00AE-41DC-9952-5F61BE3A243A"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"operator": "OR",
|
|
"negate": false,
|
|
"cpeMatch": [
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:d-link:dir-605l:a1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "433276A9-3B93-4D3C-80B7-10EACA01EC03"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:d-link:dir-605l:b1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "0B3D379D-4645-4666-B844-8DBE507A0A17"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"operator": "AND",
|
|
"nodes": [
|
|
{
|
|
"operator": "OR",
|
|
"negate": false,
|
|
"cpeMatch": [
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:d-link:dir-600l_firmware:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "1.00",
|
|
"versionEndIncluding": "1.15",
|
|
"matchCriteriaId": "ADB30E7C-7611-4F53-AC8A-DC7AF38DFAEE"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:d-link:dir-600l_firmware:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2.00",
|
|
"versionEndIncluding": "2.05",
|
|
"matchCriteriaId": "550EF494-EB3D-43CC-8E13-E30B16AB4F91"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"operator": "OR",
|
|
"negate": false,
|
|
"cpeMatch": [
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:d-link:dir-600l:a1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "8567FAB1-0430-419F-ACCB-4BA6258626CD"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:d-link:dir-600l:b1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "2483DBFE-7FAF-4F6A-A19A-56F6B326D34C"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"operator": "AND",
|
|
"nodes": [
|
|
{
|
|
"operator": "OR",
|
|
"negate": false,
|
|
"cpeMatch": [
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:realtek:realtek_sdk:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "62471288-17B2-4FCA-A673-CC4B24FB6262"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"operator": "AND",
|
|
"nodes": [
|
|
{
|
|
"operator": "OR",
|
|
"negate": false,
|
|
"cpeMatch": [
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:d-link:dir-619l_firmware:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "1.00",
|
|
"versionEndIncluding": "1.15",
|
|
"matchCriteriaId": "F6CC14FA-DEF6-422A-994E-09C412B401FD"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:d-link:dir-619l_firmware:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "2.00",
|
|
"versionEndIncluding": "2.03",
|
|
"matchCriteriaId": "A3C0BC2C-8F26-4529-B05F-22E3AEDC2262"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"operator": "OR",
|
|
"negate": false,
|
|
"cpeMatch": [
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:d-link:dir-619l:a1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "93C416D7-C52B-4733-85BA-07DF39217C0B"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:d-link:dir-619l:b1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "555D086B-EFEE-402C-A31D-503CF303A564"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"operator": "AND",
|
|
"nodes": [
|
|
{
|
|
"operator": "OR",
|
|
"negate": false,
|
|
"cpeMatch": [
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:d-link:dir-809_firmware:*:*:*:*:*:*:*:*",
|
|
"versionStartIncluding": "1.00",
|
|
"versionEndIncluding": "1.02",
|
|
"matchCriteriaId": "F2345F08-843E-4156-98DC-696F94D20034"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"operator": "OR",
|
|
"negate": false,
|
|
"cpeMatch": [
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:d-link:dir-809:a1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "BFE9422D-50BD-44C9-BAAE-167E73728972"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:d-link:dir-809:a2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "6EB5641A-42E7-4A98-91A4-2688AC78AC98"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
}
|
|
],
|
|
"references": [
|
|
{
|
|
"url": "http://jvn.jp/en/jp/JVN47580234/index.html",
|
|
"source": "cve@mitre.org",
|
|
"tags": [
|
|
"Third Party Advisory"
|
|
]
|
|
},
|
|
{
|
|
"url": "http://jvn.jp/en/jp/JVN67456944/index.html",
|
|
"source": "cve@mitre.org"
|
|
},
|
|
{
|
|
"url": "http://packetstormsecurity.com/files/132090/Realtek-SDK-Miniigd-UPnP-SOAP-Command-Execution.html",
|
|
"source": "cve@mitre.org",
|
|
"tags": [
|
|
"Third Party Advisory",
|
|
"VDB Entry"
|
|
]
|
|
},
|
|
{
|
|
"url": "http://securityadvisories.dlink.com/security/publication.aspx?name=SAP10055",
|
|
"source": "cve@mitre.org",
|
|
"tags": [
|
|
"Vendor Advisory"
|
|
]
|
|
},
|
|
{
|
|
"url": "http://www.securityfocus.com/bid/74330",
|
|
"source": "cve@mitre.org",
|
|
"tags": [
|
|
"Third Party Advisory",
|
|
"VDB Entry"
|
|
]
|
|
},
|
|
{
|
|
"url": "http://www.zerodayinitiative.com/advisories/ZDI-15-155/",
|
|
"source": "cve@mitre.org",
|
|
"tags": [
|
|
"Third Party Advisory",
|
|
"VDB Entry"
|
|
]
|
|
},
|
|
{
|
|
"url": "https://www.exploit-db.com/exploits/37169/",
|
|
"source": "cve@mitre.org",
|
|
"tags": [
|
|
"Third Party Advisory",
|
|
"VDB Entry"
|
|
]
|
|
}
|
|
]
|
|
} |