CVE-2023-27826 EXPLOIT
8.8
HIGH · CVSS 3.1 · EPSS 11.8% (pctl 96)
Patch early
A public exploit exists.
Description
SeowonIntech SWC 5100W WIMAX Bootloader 1.18.19.0, HW 0.0.7.0, and FW 1.11.0.1, 1.9.9.4 are vulnerable to OS Command Injection. which allows attackers to take over the system with root privilege by abusing doSystem() function.
Scoring
| CVSS | 8.8 (HIGH, v3.1) |
|---|---|
| Vector | CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 11.77% — more likely to be exploited than 96% of all CVEs |
| Weakness | CWE-78 |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2023-04-12 |
| Last modified | 2026-06-17 |
Affected (2)
| Vendor | Product |
|---|---|
| seowonintech | swc-5100w |
| seowonintech | swc-5100w firmware |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | WIMAX SWC-5100W Firmware V(1.11.0.1 :1.9.9.4) - Authenticated RCE | 2023-04-06 |
References
→ the Explorer · watch your stack · NVD