SNMP objects in NET-SNMP used in ORing IAP-420 allows Command Injection. This issue affects IAP-420: through 2.01e.
The attacker sends a crafted SNMP query containing malicious data to an SNMP object handled by the NET-SNMP library on the device. The input data is not properly filtered or validated (CWE-77 — command injection), allowing additional system commands to be embedded. These commands are then executed by the device's operating system with the privileges of the process handling SNMP.
An unauthenticated remote attacker can execute arbitrary system commands on the ORing IAP-420 device, leading to complete device takeover and compromise of confidentiality, integrity, and availability of the system.
Apply patches available from the manufacturer according to the references provided. As a temporary measure, it is recommended to restrict access to the SNMP interface of the device at the firewall level to trusted hosts and disable SNMP if the service is not required.
ORing IAP-420 with firmware version up to and including 2.01e.
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:XOringnet Iap 420
HWOringnetall versionsOringnet Iap 420 Firmware
OSOringnet≤ 2.01e
Related vulnerabilities
ORing IAP-420(+): domyślny serwer telnet z zakodowanymi na stałe poświadczeniami
Missing input validation in the ORing IAP-420 web-interface allows authenticated Command Injections on OS leve...
Missing input validation in the ORing IAP-420 web-interface allows Cross-Site Scripting (XSS).This issue affec...
Missing input validation in the ORing IAP-420 web-interface allows stored Cross-Site Scripting (XSS).This issu...
Missing input validation and OS command integration of the input in the ORing IAP-420 web-interface allows aut...