CVE-2017-16923 Details
Description
Command Injection vulnerability in app_data_center on Shenzhen Tenda Ac9 US_AC9V1.0BR_V15.03.05.14_multi_TD01, Ac9 ac9_kf_V15.03.05.19(6318_)_cn, Ac15 US_AC15V1.0BR_V15.03.05.18_multi_TD01, Ac15 US_AC15V1.0BR_V15.03.05.19_multi_TD01, Ac18 US_AC18V1.0BR_V15.03.05.05_multi_TD01, and Ac18 ac18_kf_V15.03.05.19(6318_)_cn devices allows remote unauthenticated attackers to execute arbitrary OS commands via a crafted cgi-bin/luci/usbeject?dev_name= GET request from the LAN. This occurs because the "sub_A6E8 usbeject_process_entry" function executes a system function with untrusted input.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
No SSVC data is available for this CVE.
References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://github.com/Iolop/Poc/tree/master/Router/Tenda | CVE | Issue TrackingThird Party Advisory |
| https://github.com/Iolop/Poc/tree/master/Router/Tenda | [email protected] | Issue TrackingThird Party Advisory |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-78 | Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| tenda ac9 firmware | us_ac9v1.0br_v15.03.05.14_multi_td01 ac9_kf_v15.03.05.19(6318_)_cn |
CPE
Remediation
| |
| tenda ac9 | All versions |
CPE
Remediation
| |
| tenda ac15 firmware | us_ac15v1.0br_v15.03.05.18_multi_td01 us_ac15v1.0br_v15.03.05.19_multi_td01 |
CPE
Remediation
| |
| tenda ac15 | All versions |
CPE
Remediation
| |
| tenda ac18 firmware | us_ac18v1.0br_v15.03.05.05_multi_td01 ac18_kf_v15.03.05.19(6318_)_cn |
CPE
Remediation
| |
| tenda ac18 | All versions |
CPE
Remediation
| |
Change History
6 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | [email protected] |
| May 13, 2026 | CVE Status Change | [email protected] |
| Nov 21, 2024 | CVE Modified | CVE |
| May 14, 2024 | CVE Modified | [email protected] |
| Oct 3, 2019 | CWE Remap | [email protected] |
| Dec 12, 2017 | Initial Analysis | [email protected] |