CVE-2017-17761

An issue was discovered on Ichano AtHome IP Camera devices. The device runs the "noodles" binary - a service on port 1300 that allows a remote (LAN) unauthenticated user to run arbitrary commands. This binary requires the "system" XML element for specifying the command. For example, a <system>id</system> command results in a <system_ack>ok</system_ack> response.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:ichano:athome_ip_camera_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:ichano:athome_ip_camera:-:*:*:*:*:*:*:*

History

21 Nov 2024, 03:18

Type Values Removed Values Added
References () http://www.securityfocus.com/bid/102974 - () http://www.securityfocus.com/bid/102974 -
References () https://blogs.securiteam.com/index.php/archives/3576 - Issue Tracking, Third Party Advisory () https://blogs.securiteam.com/index.php/archives/3576 - Issue Tracking, Third Party Advisory

Information

Published : 2017-12-19 21:29

Updated : 2025-04-20 01:37


NVD link : CVE-2017-17761

Mitre link : CVE-2017-17761

CVE.ORG link : CVE-2017-17761


JSON object : View

Products Affected

ichano

  • athome_ip_camera_firmware
  • athome_ip_camera