CVE-2017-17215
69Vexday Risk Score
Prioritize patching. It exploitation observed by VulnCheck and has a public proof of concept.
ssvc Actepss 79%
from disclosure to weapon0 days
Published on NVDMar 20
1st PoCDec 25
VulnCheckDec 21
exploitation probability
79%top 1% of all CVEs
observed exploitation
yesVulnCheck
5 public exploit(s)
In short
The Huawei HG532 router has a vulnerability that allows an authenticated attacker to send specially crafted messages to port 37215 and execute arbitrary code on the device. This means someone with login access could take full control of the router.
Technical detail
Huawei HG532 customized versions are vulnerable to remote code execution via unauthenticated input on port 37215. An authenticated attacker can send malicious packets to achieve arbitrary code execution; the vulnerability requires network access to the affected port and valid authentication credentials to exploit.
Summary generated and translated by AI from the official description.
Huawei HG532 with some customized versions has a remote code execution vulnerability. An authenticated attacker could send malicious packets to port 37215 to launch attacks. Successful exploit could lead to the remote execution of arbitrary code.
Affected products
Huawei Technologies Co., Ltd. · HG532public PoCs found — 5
exploitdbwww.exploit-db.com/exploits/43414unverifiedgithubgithub.com/1337g/CVE-2017-17215★ 26githubgithub.com/wilfred-wulbou/HG532d-RCE-Exploit★ 9githubgithub.com/ltfafei/HuaWei_Route_HG532_RCE_CVE-2017-17215★ 0vulncheckvulncheck.com/xdb/6ddca00e2a93unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.