Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5g4j-78x8-fff7

Опубликовано: 06 июл. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 10

Описание

All versions of ETIC Telecom Remote Access Server (RAS) 4.5.0 and prior’s web portal is vulnerable to accepting malicious firmware packages that could provide a backdoor to an attacker and provide privilege escalation to the device.

All versions of ETIC Telecom Remote Access Server (RAS) 4.5.0 and prior’s web portal is vulnerable to accepting malicious firmware packages that could provide a backdoor to an attacker and provide privilege escalation to the device.

EPSS

Процентиль: 20%
0.00066
Низкий

10 Critical

CVSS3

Дефекты

CWE-345

Связанные уязвимости

CVSS3: 7.6
nvd
около 3 лет назад

All versions of ETIC Telecom Remote Access Server (RAS) 4.5.0 and prior’s web portal is vulnerable to accepting malicious firmware packages that could provide a backdoor to an attacker and provide privilege escalation to the device.

EPSS

Процентиль: 20%
0.00066
Низкий

10 Critical

CVSS3

Дефекты

CWE-345