PT-2017-18965 · Motorola+1 · Motorola Mx011Anm+1

Chris Grayson

+2

·

Publicado

2017-07-31

·

Atualizado

2017-08-03

·

CVE-2017-9495

CVSS v3.1

4.6

Média

VetorAV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Comcast firmware on Motorola MX011ANM version MX011AN 2.9p6s1 PROD sey
Description The issue allows physically proximate attackers to read arbitrary files on the device. This can be achieved by pressing a specific sequence of buttons on an RF4CE remote to access the diagnostic display and then launching a Remote Web Inspector script.
Recommendations For Comcast firmware on Motorola MX011ANM version MX011AN 2.9p6s1 PROD sey, consider restricting physical access to the device to minimize the risk of exploitation. As a temporary workaround, avoid using the Remote Web Inspector script until a patch is available.

Correção

Information Disclosure

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2017-9495

Produtos afetados

Comcast Firmware
Motorola Mx011Anm