Aterm · Aterm Wf1200Cr · CVE-2020-5524
**Name of the Vulnerable Software and Affected Versions**
Aterm WF1200C versions 1.2.1 and earlier
Aterm WG1200CR versions 1.2.1 and earlier
Aterm WG2600HS versions 1.3.2 and earlier
**Description**
The issue allows an attacker on the same network segment to execute arbitrary OS commands with root privileges via the UPnP function.
**Recommendations**
For Aterm WF1200C versions 1.2.1 and earlier, consider disabling the UPnP function until a patch is available.
For Aterm WG1200CR versions 1.2.1 and earlier, consider disabling the UPnP function until a patch is available.
For Aterm WG2600HS versions 1.3.2 and earlier, consider disabling the UPnP function until a patch is available.