An issue was discovered in Cloud Media Popcorn A-200 03-05-130708-21-POP-411-000 firmware. It is configured to provide TELNET remote access (without a password) that pops a shell as root. If an attacker can connect to port 23 on the device, he can completely compromise it.
References
Link | Resource |
---|---|
https://gist.github.com/freetom/2a446a226d0e98807c8b0c1111ef2def | Third Party Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
No history.
Information
Published : 2018-06-17 20:29
Updated : 2019-10-03 00:03
NVD link : CVE-2018-12072
Mitre link : CVE-2018-12072
CVE.ORG link : CVE-2018-12072
JSON object : View
Products Affected
cloudmedia
- popcorn_a-200
- popcorn_a-200_firmware
CWE