Unauthenticated command execution via at_command.asp
Published Oct 24, 2024 · Updated Oct 25, 2024
Command injection in Wuhan Tianyu CPE Router Firmware CommonCPExCPETS_v3.2.468.11.04_P4 allows remote attackers to execute commands. The at_command.asp web component accepts attacker-supplied AT commands without authentication and forwards them to the device command interface. An attacker must reach the router's adjacent network; successful injection can read or alter device state and interrupt router operation.
Summary
What happened
Command injection in Wuhan Tianyu CPE Router Firmware CommonCPExCPETS_v3.2.468.11.04_P4 allows remote attackers to execute commands. The at_command.asp web component accepts attacker-supplied AT commands without authentication and forwards them to the device command interface. An attacker must reach the router's adjacent network; successful injection can read or alter device state and interrupt router operation.
The record
- CVE
- CVE-2024-48441
- Published
- Oct 24, 2024
- Updated
- Oct 25, 2024
- Vendor
- Wuhan Tianyu Information Industry Co., Ltd.
- Product
- Tianyu CPE Router Firmware
- Classifications
- CWE-77, T1059
- Attack vector
- adjacent
- Privileges
- unauthenticated
Timeline
How it unfolded
- Oct 24, 2024CVE publishedPublication date reported by the CVE source.
- Oct 25, 2024Record updatedLatest update available in the CVE record.
Exploitability
Present is not the same as exploitable
Compare your product and version with the public record. A matching version still requires validation against your environment.
Is a vulnerable build present?
Compare these published version ranges with your installed build and any vendor patches.
- Affected versionversion=commoncpexcpets_v3.2.468.11.04_p4
What conditions does exploitation require?
What is affected?
Published CVSS scores
CVSS describes severity. EPSS estimates exploitation probability.
Attacks
What attackers are doing with it
Daily unique IPs observed by Shadowserver honeypots for known exploited vulnerabilities (KEVs). Missing observations do not establish an absence of attacks.
Weakness, pattern, technique
Public exploit references
- Unauthenticated Factory Mode Reset and AT Command Injection in JBoneOS or JBoneCloud Firmwareproof of concept · demonstrated
Labels summarize the accepted research assessment. They do not indicate a test against your environment.
Technologies
Your stack
See the directory against your own environment.
Your stack
Check the software in your environment
Book a demo to see how Hinoki identifies affected software and validates exploitability in your environment.
Book a demo