VulnerabilityModified
CVE-2018-15484
Unauthenticated Remote Code Execution is possible through the open HTTP interface by modifying autoexec.bat, aka KONE-01.
CRITICAL 9.8EPSS 7.66%
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (7.66%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
An issue was discovered on KONE Group Controller (KGC) devices before 4.6.5. Unauthenticated Remote Code Execution is possible through the open HTTP interface by modifying autoexec.bat, aka KONE-01.
- CVSS 3.0
- 9.8 CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- EPSS
- 7.66% probability · 94th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-78
- Affected
- kone/group controller firmware
- Source
- cve@mitre.org
References
- http://packetstormsecurity.com/files/149252/KONE-KGC-4.6.4-DoS-Code-Execution-LFI-Bypass.htmlThird Party Advisory, VDB Entry
- https://www.kone.com/en/vulnerability.aspxVendor Advisory
- http://packetstormsecurity.com/files/149252/KONE-KGC-4.6.4-DoS-Code-Execution-LFI-Bypass.htmlThird Party Advisory, VDB Entry
- https://www.kone.com/en/vulnerability.aspxVendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.