Command Injection Vulnerability in Toshiba Home Gateways
CVE-2018-16200
8.8HIGH
What is CVE-2018-16200?
The Toshiba Home Gateway models HEM-GW16A and HEM-GW26A are vulnerable to a command injection flaw that allows an attacker on the same local network segment to execute arbitrary operating system commands. This weakness arises in versions 1.2.9 and earlier, potentially enabling unauthorized access and control over network device functions, which can compromise the network's integrity.
Affected Version(s)
Toshiba Home gateway HEM-GW16A and Toshiba Home gateway HEM-GW26A (Toshiba Home gateway HEM-GW16A 1.2.9 and earlier, Toshiba Home gateway HEM-GW26A 1.2.9 and earlier)