Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-53rm-p3f5-vx5c

Опубликовано: 14 янв. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 9.1

Описание

A command injection vulnerability exists in the wireless.cgi AddMac() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP request can lead to arbitrary command execution. An attacker can make an authenticated HTTP request to trigger this vulnerability.

A command injection vulnerability exists in the wireless.cgi AddMac() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP request can lead to arbitrary command execution. An attacker can make an authenticated HTTP request to trigger this vulnerability.

EPSS

Процентиль: 80%
0.01417
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-74

Связанные уязвимости

CVSS3: 9.1
nvd
около 1 года назад

A command injection vulnerability exists in the wireless.cgi AddMac() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP request can lead to arbitrary command execution. An attacker can make an authenticated HTTP request to trigger this vulnerability.

EPSS

Процентиль: 80%
0.01417
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-74