Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-49rh-2r4v-jr58

Опубликовано: 11 июн. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

An unauthenticated remote attacker can execute arbitrary commands with root privileges on affected devices due to lack of Cross-Site Request Forgery (CSRF) protection in the Main Web Interface (endpoint tls_iotgen_setting).

An unauthenticated remote attacker can execute arbitrary commands with root privileges on affected devices due to lack of Cross-Site Request Forgery (CSRF) protection in the Main Web Interface (endpoint tls_iotgen_setting).

8.8 High

CVSS3

Дефекты

CWE-352

Связанные уязвимости

nvd
8 месяцев назад

Rejected reason: CVE-2025-41662 is considered redundant or unnecessary and thus should be withdrawn. Instead, a new CVE CVE-2025-41687 has been reserved to better reflect the updated analysis.

8.8 High

CVSS3

Дефекты

CWE-352