Vulnerability CVE-2018-16739


Published: 2023-10-26   Modified: 2023-10-27

Description:
An issue was discovered on certain ABUS TVIP devices. Due to a path traversal in /opt/cgi/admin/filewrite, an attacker can write to files, and thus execute code arbitrarily with root privileges.

 References:
https://sec.maride.cc/posts/abus/
https://www.ccc.de/en/updates/2019/update-nicht-verfugbar-hersteller-nicht-zu-erreichen

Copyright 2026, cxsecurity.com

 

Back to Top