CVE-2018-0512: Iodata Bx-VP1 Firmware

Medium severity, CVSS 6.8. EPSS: 0.7% chance of exploitation in the next 30 days.

Devices with IP address setting tool "MagicalFinder" provided by I-O DATA DEVICE, INC. allow authenticated attackers to execute arbitrary OS commands via unspecified vectors.

Affected products

  • Iodata Bx-VP1 Firmware: up to and including 2.01
  • Iodata Gv-NTX1 Firmware: up to and including 1.02.00
  • Iodata Gv-NTX2 Firmware: up to and including 1.02.00
  • Iodata Hdl-A Firmware: up to and including 1.26
  • Iodata Hdl-Ah Firmware: up to and including 1.26
  • Iodata Hdl-Gt Firmware: up to and including 1.37
  • Iodata Hdl-Gtr Firmware: up to and including 1.37
  • Iodata Hdl-T Firmware: up to and including 1.12
  • Iodata Hdl-XR2U Firmware: up to and including 2.01
  • Iodata Hdl-XR2UW Firmware: up to and including 2.01
  • Iodata Hdl-XR Firmware: up to and including 2.01
  • Iodata Hdl-Xrw Firmware: up to and including 2.01
  • Iodata Hdl-Xv Firmware: up to and including 1.50
  • Iodata Hdl-Xvw Firmware: up to and including 1.50
  • Iodata HDL2-A Firmware: up to and including 1.26
  • Iodata HDL2-Ah Firmware: up to and including 1.26
  • Iodata HFAS1 Firmware: up to and including 1.40
  • Iodata Hls-C Firmware: up to and including 1.12
  • Iodata Hvl-A Firmware: up to and including 2.04
  • Iodata Hvl-At Firmware: up to and including 2.04
  • Iodata Hvl-Ata Firmware: up to and including 2.04
  • Iodata Hvl-S Firmware: up to and including 1.00
  • Iodata Whg-AC1750 Firmware: up to and including 1.07
  • Iodata Whg-AC1750A Firmware: up to and including 3.00
  • Iodata Whg-AC1750AL Firmware: up to and including 1.07
  • and 20 more

Published 2018-02-08. Last modified 2026-06-17.