CVE-2017-17215

high

Description

Huawei HG532 with some customized versions has a remote code execution vulnerability. An authenticated attacker could send malicious packets to port 37215 to launch attacks. Successful exploit could lead to the remote execution of arbitrary code.

References

https://www.helpnetsecurity.com/2026/04/22/new-mirai-variants-target-routers-and-dvrs-via-old-flaws/

https://www.infosecurity-magazine.com/news/mirai-variant-dvr-flaw-iot-botnet/

https://thehackernews.com/2026/04/mirai-variant-nexcorium-exploits-cve.html

https://securityaffairs.com/190974/malware/nexcorium-mirai-variant-exploits-tbk-dvr-flaw-to-launch-ddos-attacks.html

https://www.fortinet.com/blog/threat-research/tracking-mirai-variant-nexcorium-a-vulnerability-driven-iot-botnet-campaign

https://hackread.com/mirai-variant-nexcorium-dvr-devices-ddos-attacks/

https://www.helpnetsecurity.com/2026/03/18/government-agencies-cyberattack-campaigns-volume/

https://www.netscout.com/blog/asert/botnet-pulse

https://hackread.com/two-mirai-botnets-lzrd-resgod-exploiting-wazuh-flaw/

https://www.akamai.com/blog/security-research/botnets-flaw-mirai-spreads-through-wazuh-vulnerability

https://thehackernews.com/2025/06/botnet-wazuh-server-vulnerability.html

https://www.securityweek.com/murdoc-botnet-ensnaring-avtech-huawei-devices/

https://www.darkreading.com/cyberattacks-data-breaches/mirai-botnet-spinoffs-global-wave-ddos-attacks

https://thehackernews.com/2025/01/murdocbotnet-found-exploiting-avtech-ip.html

https://thehackernews.com/2025/01/mirai-botnet-variant-exploits-four.html

https://www.bleepingcomputer.com/news/security/new-mirai-botnet-targets-industrial-routers-with-zero-day-exploits/

https://blog.xlab.qianxin.com/gayfemboy/

https://www.infosecurity-magazine.com/news/unpatched-cctv-cameras-exploited/

https://www.bleepingcomputer.com/news/security/malware-exploits-5-year-old-zero-day-to-infect-end-of-life-ip-cameras/

https://securityaffairs.com/167764/malware/corona-mirai-botnet-avtech-cctv-zero-day.html

https://www.akamai.com/blog/security-research/2024-corona-mirai-botnet-infects-zero-day-sirt

https://blog.xlab.qianxin.com/catddos-derivative-en/

https://www.avira.com/en/blog/a-gafgyt-variant-that-exploits-pulse-secure-cve-2020-8218

Details

Source: Mitre, NVD

Published: 2018-03-20

Updated: 2024-11-21

Risk Information

CVSS v2

Base Score: 6.5

Vector: CVSS2#AV:N/AC:L/Au:S/C:P/I:P/A:P

Severity: Medium

CVSS v3

Base Score: 8.8

Vector: CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Severity: High

EPSS

EPSS: 0.92945