ID

VAR-E-201702-0954


CVE

cve_id:CVE-2016-6024

Trust: 0.3

sources: BID: 96384

TITLE

NetCommWireless Wireless Router CVE-2016-6024 Remote Command Injection Vulnerability

Trust: 0.3

sources: BID: 96384

DESCRIPTION

NetCommWireless Wireless Router is prone to a remote command-injection vulnerability.
Successful exploit allows an attacker to execute arbitrary commands in context of the affected application.
NetCommWireless Wireless Router 3G10WVE-L101-S306ETS-C01_R03 is vulnerable; other versions may also be affected.

Trust: 0.3

sources: BID: 96384

AFFECTED PRODUCTS

vendor:netcommmodel:wireless hspa 3g10wve-l101-s306etsscope: - version: -

Trust: 0.3

vendor:netcommmodel:wireless hspa 3g10wve-l101-s306etsscope:neversion: -

Trust: 0.3

sources: BID: 96384

EXPLOIT

The researcher has created a proof-of-concept to demonstrate the issue. Please see the references for more information.

Trust: 0.3

sources: BID: 96384

PRICE

Free

Trust: 0.3

sources: BID: 96384

TYPE

Design Error

Trust: 0.3

sources: BID: 96384

CREDITS

Bhadresh Patel.

Trust: 0.3

sources: BID: 96384

EXTERNAL IDS

db:NVDid:CVE-2016-6024

Trust: 0.3

db:BIDid:96384

Trust: 0.3

sources: BID: 96384

REFERENCES

url:http://seclists.org/fulldisclosure/2016/may/18

Trust: 0.3

url:http://www.netcommwireless.com/

Trust: 0.3

sources: BID: 96384

SOURCES

db:BIDid:96384

LAST UPDATE DATE

2022-07-27T09:51:43.806000+00:00


SOURCES UPDATE DATE

db:BIDid:96384date:2017-03-07T01:06:00

SOURCES RELEASE DATE

db:BIDid:96384date:2017-02-09T00:00:00