Vulnerability Description
An issue was discovered on SoftCase T-Router build 20112017 devices. A remote attacker can read and write to arbitrary files on the system as root, as demonstrated by code execution after writing to a crontab file. This is fixed in production builds as of Spring 2018.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Softcase | T-Router Firmware | 20112017 |
| Softcase | T-Router | - |
References
- https://gist.github.com/neolead/2b052512f90f75e93b5c465c265322b0#file-cve-2018-1Third Party Advisory
- https://gist.github.com/neolead/2b052512f90f75e93b5c465c265322b0#file-cve-2018-1Third Party Advisory
FAQ
What is CVE-2018-11241?
CVE-2018-11241 is a vulnerability with a CVSS score of 9.8 (CRITICAL). An issue was discovered on SoftCase T-Router build 20112017 devices. A remote attacker can read and write to arbitrary files on the system as root, as demonstrated by code execution after writing to a...
How severe is CVE-2018-11241?
CVE-2018-11241 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2018-11241?
Check the references section above for vendor advisories and patch information. Affected products include: Softcase T-Router Firmware, Softcase T-Router.