Vulnerability Details CVE-2015-2797
Stack-based buffer overflow in AirTies Air 6372, 5760, 5750, 5650TT, 5453, 5444TT, 5443, 5442, 5343, 5342, 5341, and 5021 DSL modems with firmware 1.0.2.0 and earlier allows remote attackers to execute arbitrary code via a long string in the redirect parameter to cgi-bin/login.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.771
EPSS Ranking 98.9%
CVSS Severity
CVSS v2 Score 10.0
Products affected by CVE-2015-2797
-
cpe:2.3:h:airties:air_5021:-
-
cpe:2.3:h:airties:air_5341:-
-
cpe:2.3:h:airties:air_5342:-
-
cpe:2.3:h:airties:air_5343:-
-
cpe:2.3:h:airties:air_5442:-
-
cpe:2.3:h:airties:air_5443:-
-
cpe:2.3:h:airties:air_5444tt:-
-
cpe:2.3:h:airties:air_5453:-
-
cpe:2.3:h:airties:air_5650tt:-
-
cpe:2.3:h:airties:air_5750:-
-
cpe:2.3:h:airties:air_5760:-
-
cpe:2.3:h:airties:air_6372:-
-
cpe:2.3:o:airties:air_firmware:*