CVE-2017-11495: Phicomm k2(psg1218)-Firmware
Critical severity, CVSS 9.8. EPSS: 3.2% chance of exploitation in the next 30 days.
PHICOMM K2(PSG1218) devices V22.5.11.5 and earlier allow unauthenticated remote code execution via a request to an unspecified ASP script; alternatively, the attacker can leverage unauthenticated access to this script to trigger a reboot via an ifType=reboot action.
Affected products
- Phicomm k2(psg1218)-Firmware: up to and including 22.5.11.5
Published 2017-07-20. Last modified 2026-06-17.