VYPR
Unrated severityNVD Advisory· Published May 28, 2009· Updated Apr 23, 2026

CVE-2009-1807

CVE-2009-1807

Description

Unspecified vulnerability in Config.dll in Baofeng products 3.09.04.17 and earlier allows remote attackers to execute arbitrary code by calling the SetAttributeValue method, as exploited in the wild in April and May 2009.

Affected products

5
  • Baofeng/Storm5 versions
    cpe:2.3:a:baofeng:storm:*:*:*:*:*:*:*:*+ 4 more
    • cpe:2.3:a:baofeng:storm:*:*:*:*:*:*:*:*range: <=3.09.04.17
    • cpe:2.3:a:baofeng:storm:2.7.9_8:*:*:*:*:*:*:*
    • cpe:2.3:a:baofeng:storm:2.7.9_10:*:*:*:*:*:*:*
    • cpe:2.3:a:baofeng:storm:2.8:*:*:*:*:*:*:*
    • cpe:2.3:a:baofeng:storm:2.9:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.