Back to Database
Status published
Critical
CVE-2020-17456
SEOWON INTECH SLC-130 And SLR-120S devices allow Remote Code Execution...
Vulnerability Description
SEOWON INTECH SLC-130 And SLR-120S devices allow Remote Code Execution via the ipAddr parameter to the system_log.cgi page.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2020-17456
Credits & Attribution
No credits recorded in the NVD database.
References
- https://maj0rmil4d.github.io/Seowon-SlC-130-And-SLR-120S-Exploit/
- http://packetstormsecurity.com/files/158933/Seowon-SlC-130-Router-Remote-Code-Execution.html
- http://packetstormsecurity.com/files/166273/Seowon-SLR-120-Router-Remote-Code-Execution.html
- https://github.com/TAPESH-TEAM/CVE-2020-17456-Seowon-SLR-120S42G-RCE-Exploit-Unauthenticated
- https://www.exploit-db.com/exploits/50821
More from seowonintech
View All →CVE-2021-42230
Seowon 130-SLC router all versions as of 2021-09-15 is vulnerable...
Critical
9.8
CVE-2016-10760
On Seowon Intech routers, there is a Command Injection vulnerability...
Critical
9.8
CVE-2013-7183
cgi-bin/reboot.cgi on Seowon Intech SWC-9100 routers allows remote attackers to...
High
7.8
CVE-2013-7179
The ping functionality in cgi-bin/diagnostic.cgi on Seowon Intech SWC-9100 routers...
High
8.3
Affected Vendor
seowonintech
View all reports →Affected Software
slc-130 firmware, slr-120s firmware, slr-120s42g firmware, slr-120d42g firmware, slr-120t42g firmware
Vulnerable Versions:
Unknown
Timeline
Official Publish:
August 19th, 2020
Last Modified:
August 4th, 2024
Added to House:
July 21st, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.