Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3685-2v7g-3c6v

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

tdpServer on TP-Link Archer A7 AC1750 devices before 201029 allows remote attackers to execute arbitrary code via the slave_mac parameter. NOTE: this issue exists because of an incomplete fix for CVE-2020-10882 in which shell quotes are mishandled.

tdpServer on TP-Link Archer A7 AC1750 devices before 201029 allows remote attackers to execute arbitrary code via the slave_mac parameter. NOTE: this issue exists because of an incomplete fix for CVE-2020-10882 in which shell quotes are mishandled.

EPSS

Процентиль: 99%
0.82625
Высокий

Дефекты

CWE-77

Связанные уязвимости

CVSS3: 9.8
nvd
около 5 лет назад

tdpServer on TP-Link Archer A7 AC1750 devices before 201029 allows remote attackers to execute arbitrary code via the slave_mac parameter. NOTE: this issue exists because of an incomplete fix for CVE-2020-10882 in which shell quotes are mishandled.

EPSS

Процентиль: 99%
0.82625
Высокий

Дефекты

CWE-77