CVE Vulnerabilities

CVE-2009-1807

Published: May 28, 2009 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Unspecified vulnerability in Config.dll in Baofeng products 3.09.04.17 and earlier allows remote attackers to execute arbitrary code by calling the SetAttributeValue method, as exploited in the wild in April and May 2009.

Affected Software

NameVendorStart VersionEnd Version
StormBaofeng*3.09.04.17 (including)
StormBaofeng2.7.9_8 (including)2.7.9_8 (including)
StormBaofeng2.7.9_10 (including)2.7.9_10 (including)
StormBaofeng2.8 (including)2.8 (including)
StormBaofeng2.9 (including)2.9 (including)

References