ID

VAR-201201-0130


CVE

CVE-2012-0902


TITLE

AirTies Air 4450 'cgi-bin/loader' Denial of Service Vulnerability

Trust: 0.9

sources: CNVD: CNVD-2012-0067 // BID: 51320

DESCRIPTION

AirTies Air 4450 1.1.2.18 allows remote attackers to cause a denial of service (reboot) via a direct request to cgi-bin/loader. AirTies Air is a set-top box device. Air 4450 is prone to a denial-of-service vulnerability. An attacker can exploit this issue to cause an affected device to reboot. Repeated attempts will result in a denial-of-service condition

Trust: 2.43

sources: NVD: CVE-2012-0902 // JVNDB: JVNDB-2012-001174 // CNVD: CNVD-2012-0067 // BID: 51320

IOT TAXONOMY

category:['Network device']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2012-0067

AFFECTED PRODUCTS

vendor:airtiesmodel:air 4450scope:eqversion:1.1.2.18

Trust: 2.4

vendor:airtiesmodel:airscope:eqversion:44500

Trust: 0.9

sources: CNVD: CNVD-2012-0067 // BID: 51320 // JVNDB: JVNDB-2012-001174 // CNNVD: CNNVD-201201-099 // NVD: CVE-2012-0902

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2012-0902
value: MEDIUM

Trust: 1.0

NVD: CVE-2012-0902
value: MEDIUM

Trust: 0.8

CNNVD: CNNVD-201201-099
value: MEDIUM

Trust: 0.6

nvd@nist.gov: CVE-2012-0902
severity: MEDIUM
baseScore: 5.0
vectorString: AV:N/AC:L/AU:N/C:N/I:N/A:P
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: NONE
integrityImpact: NONE
availabilityImpact: PARTIAL
exploitabilityScore: 10.0
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.8

sources: JVNDB: JVNDB-2012-001174 // CNNVD: CNNVD-201201-099 // NVD: CVE-2012-0902

PROBLEMTYPE DATA

problemtype:NVD-CWE-noinfo

Trust: 1.0

sources: NVD: CVE-2012-0902

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-201201-099

TYPE

lack of information

Trust: 0.6

sources: CNNVD: CNNVD-201201-099

CONFIGURATIONS

sources: JVNDB: JVNDB-2012-001174

PATCH

title:Air 4450url:http://airties.com/product-details.asp?pn=Air%204450&ci=1&dil=tr

Trust: 0.8

sources: JVNDB: JVNDB-2012-001174

EXTERNAL IDS

db:NVDid:CVE-2012-0902

Trust: 2.7

db:BIDid:51320

Trust: 2.5

db:EXPLOIT-DBid:18336

Trust: 1.6

db:JVNDBid:JVNDB-2012-001174

Trust: 0.8

db:CNVDid:CNVD-2012-0067

Trust: 0.6

db:XFid:4450

Trust: 0.6

db:XFid:72200

Trust: 0.6

db:CNNVDid:CNNVD-201201-099

Trust: 0.6

sources: CNVD: CNVD-2012-0067 // BID: 51320 // JVNDB: JVNDB-2012-001174 // CNNVD: CNNVD-201201-099 // NVD: CVE-2012-0902

REFERENCES

url:http://www.securityfocus.com/bid/51320

Trust: 2.2

url:http://www.exploit-db.com/exploits/18336

Trust: 1.6

url:https://exchange.xforce.ibmcloud.com/vulnerabilities/72200

Trust: 1.0

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2012-0902

Trust: 0.8

url:http://web.nvd.nist.gov/view/vuln/detail?vulnid=cve-2012-0902

Trust: 0.8

url:http://xforce.iss.net/xforce/xfdb/72200

Trust: 0.6

url:http://airties.com/product-details.asp?pn=air 4450&ci=1&dil=tr

Trust: 0.3

sources: CNVD: CNVD-2012-0067 // BID: 51320 // JVNDB: JVNDB-2012-001174 // CNNVD: CNNVD-201201-099 // NVD: CVE-2012-0902

CREDITS

rigan

Trust: 0.9

sources: BID: 51320 // CNNVD: CNNVD-201201-099

SOURCES

db:CNVDid:CNVD-2012-0067
db:BIDid:51320
db:JVNDBid:JVNDB-2012-001174
db:CNNVDid:CNNVD-201201-099
db:NVDid:CVE-2012-0902

LAST UPDATE DATE

2024-08-14T14:58:24.408000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2012-0067date:2012-01-11T00:00:00
db:BIDid:51320date:2015-03-19T07:34:00
db:JVNDBid:JVNDB-2012-001174date:2012-01-25T00:00:00
db:CNNVDid:CNNVD-201201-099date:2012-01-16T00:00:00
db:NVDid:CVE-2012-0902date:2017-08-29T01:31:05.617

SOURCES RELEASE DATE

db:CNVDid:CNVD-2012-0067date:2012-01-11T00:00:00
db:BIDid:51320date:2012-01-08T00:00:00
db:JVNDBid:JVNDB-2012-001174date:2012-01-25T00:00:00
db:CNNVDid:CNNVD-201201-099date:1900-01-01T00:00:00
db:NVDid:CVE-2012-0902date:2012-01-20T17:55:02.487