Arbitrary OS Command Execution in Aterm Network Routers by NEC
CVE-2018-16195
What is CVE-2018-16195?
The Aterm WF1200CR and Aterm WG1200CR routers from NEC are vulnerable to an issue that allows an attacker on the same network segment to execute arbitrary operating system commands. This is achieved through an exploit targeting the SOAP interface of the Universal Plug and Play (UPnP) protocol. Devices running Aterm WF1200CR firmware version 1.1.1 and earlier, as well as Aterm WG1200CR firmware version 1.0.1 and earlier, are at risk and should be updated to mitigate potential exploitation.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Aterm WF1200CR and Aterm WG1200CR (Aterm WF1200CR firmware Ver1.1.1 and earlier, Aterm WG1200CR firmware Ver1.0.1 and earlier)
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
