← All CVEs

CVE-2019-7385

high · 7.8

An authenticated shell command injection issue has been discovered in Raisecom ISCOM HT803G-U, HT803G-W, HT803G-1GE, and HT803G GPON products with the firmware version ISCOMHT803G-U_2.0.0_140521_R4.1.47.002 or below, The values of the newpass and confpass parameters in /bin/WebMGR are used in a system call in the firmware. Because there is no user input validation, this leads to authenticated code execution on the device.

7.8
CVSS
12.2%
EPSS (exploit prob.)
96th
EPSS percentile
2019-03-21
Published

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Weaknesses

CWE-78

Affected products

VendorProductAffected versions
raisecomiscom_ht803g-u_firmware<= iscomht803g-u_2.0.0_140521_r4.1.47.002
raisecomiscom_ht803g-uall versions
raisecomiscom_ht803g-w_firmware< iscomht803g-u_2.0.0_140521_r4.1.47.002
raisecomiscom_ht803g-wall versions
raisecomiscom_ht803g-1ge_firmware< iscomht803g-u_2.0.0_140521_r4.1.47.002
raisecomiscom_ht803g-1geall versions
raisecomiscom_ht803g_gpon_firmware< iscomht803g-u_2.0.0_140521_r4.1.47.002
raisecomiscom_ht803g_gponall versions

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2019-7385