CVE-2015-1187
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD
Description
The ping tool in multiple D-Link and TRENDnet devices allow remote attackers to execute arbitrary code via the ping_addr parameter to ping.ccp.
Affected (18)
Products: Dlink: Dir 626l Firmware, Dir 636l Firmware, Dir 808l Firmware, Dir 810l Firmware, Dir 820l Firmware, Dir 826l Firmware, Dir 830l Firmware, Dir 836l Firmware, Dir 651 Firmware · Trendnet: Tew 731br Firmware, Tew 651br Firmware, Tew 652br Firmware, Tew 711br Firmware, Tew 810dr Firmware, Tew 813dru Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.04 b04 |
| Running on/with | Platform Versions |
|---|---|
Dlink Dir 626l | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.04 |
| Running on/with | Platform Versions |
|---|---|
Dlink Dir 636l | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.03 b05 |
| Running on/with | Platform Versions |
|---|---|
Dlink Dir 808l | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.01 b04 |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Version 2.02 b01 |
| Running on/with | Platform Versions |
|---|---|
Dlink Dir 810l | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.02 b10 |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.05 b03 |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Version 2.01 b02 |
| Running on/with | Platform Versions |
|---|---|
Dlink Dir 820l | All versions |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.00 b23 |
| Running on/with | Platform Versions |
|---|---|
Dlink Dir 826l | All versions |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.00 b07 |
| Running on/with | Platform Versions |
|---|---|
Dlink Dir 830l | All versions |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.01 b03 |
| Running on/with | Platform Versions |
|---|---|
Dlink Dir 836l | All versions |
Configuration L
| Vulnerable Software | Affected Versions |
|---|---|
| Version 2.01 b01 |
| Running on/with | Platform Versions |
|---|---|
Trendnet Tew 731br | All versions |
Configuration M
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.10na b02 |
| Running on/with | Platform Versions |
|---|---|
Dlink Dir 651 | All versions |
Configuration N
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Trendnet Tew 651br | All versions |
Configuration O
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Trendnet Tew 652br | All versions |
Configuration P
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.00 b31 |
| Running on/with | Platform Versions |
|---|---|
Trendnet Tew 711br | All versions |
Configuration Q
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.00 b19 |
| Running on/with | Platform Versions |
|---|---|
Trendnet Tew 810dr | All versions |
Configuration R
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.00 b23 |
| Running on/with | Platform Versions |
|---|---|
Trendnet Tew 813dru | All versions |
References (13)
Source: cve@mitre.org
Issue TrackingThird Party AdvisoryVDB Entry
Source: cve@mitre.org
ExploitThird Party AdvisoryVDB Entry
Source: cve@mitre.org
Issue TrackingMailing ListThird Party Advisory
Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
Broken LinkIssue TrackingMitigationThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingThird Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingMailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Broken LinkThird Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Broken LinkIssue TrackingMitigationThird Party Advisory
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0
US Government Resource
Timeline
No history available yet.