Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4rwf-wpmq-cjv2

Опубликовано: 27 апр. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 2.1
CVSS3: 6.3

Описание

A vulnerability was found in Tenda F456 1.0.0.5. This impacts the function FromWriteFacMac of the file /goform/WriteFacMac of the component httpd. The manipulation of the argument mac results in command injection. The attack can be executed remotely. The exploit has been made public and could be used.

A vulnerability was found in Tenda F456 1.0.0.5. This impacts the function FromWriteFacMac of the file /goform/WriteFacMac of the component httpd. The manipulation of the argument mac results in command injection. The attack can be executed remotely. The exploit has been made public and could be used.

EPSS

Процентиль: 86%
0.03024
Низкий

2.1 Low

CVSS4

6.3 Medium

CVSS3

Дефекты

CWE-74

Связанные уязвимости

CVSS3: 6.3
nvd
3 месяца назад

A vulnerability was found in Tenda F456 1.0.0.5. This impacts the function FromWriteFacMac of the file /goform/WriteFacMac of the component httpd. The manipulation of the argument mac results in command injection. The attack can be executed remotely. The exploit has been made public and could be used.

CVSS3: 8.8
fstec
3 месяца назад

Уязвимость функции fromP2pListFilter() (/goform/P2pListFilter) веб-сервера httpd микропрограммного обеспечения маршрутизаторов Tenda F456, позволяющая нарушителю выполнить произвольные команды

EPSS

Процентиль: 86%
0.03024
Низкий

2.1 Low

CVSS4

6.3 Medium

CVSS3

Дефекты

CWE-74