CVE ID | |
CVSS SCORE | 10.0, AV:N/AC:L/Au:N/C:C/I:C/A:C |
AFFECTED VENDORS |
Belkin |
AFFECTED PRODUCTS |
Wemo Link |
TREND MICRO CUSTOMER PROTECTION | Trend Micro TippingPoint IPS customers are protected against this vulnerability by Digital Vaccine protection filter ID ['29780']. For further product information on the TippingPoint IPS: http://www.tippingpoint.com |
VULNERABILITY DETAILS |
The specific flaw exists within the syseventd daemon, which listens on TCP port 52367 by default. The issue results from the lack of authentication prior to allowing alterations to the system configuration. An attacker can leverage this vulnerability to execute code under the context of root.
|
ADDITIONAL DETAILS |
08/18/17 - ZDI reported vulnerability to vendor -- Mitigation: |
DISCLOSURE TIMELINE |
|
CREDIT | Dove Chiu and Kenney Lu of Trend Micro |