Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-749h-rq84-6jgg

Опубликовано: 09 авг. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 6.4
CVSS3: 7

Описание

A vulnerability was found in TRENDnet TV-IP110WN 1.2.2 and classified as problematic. Affected by this issue is some unknown functionality of the file /server/boa.conf of the component Embedded Boa Web Server. The manipulation leads to least privilege violation. Local access is required to approach this attack. The complexity of an attack is rather high. The exploitation is known to be difficult. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

A vulnerability was found in TRENDnet TV-IP110WN 1.2.2 and classified as problematic. Affected by this issue is some unknown functionality of the file /server/boa.conf of the component Embedded Boa Web Server. The manipulation leads to least privilege violation. Local access is required to approach this attack. The complexity of an attack is rather high. The exploitation is known to be difficult. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

EPSS

Процентиль: 1%
0.00012
Низкий

6.4 Medium

CVSS4

7 High

CVSS3

Дефекты

CWE-266

Связанные уязвимости

CVSS3: 7
nvd
21 день назад

A vulnerability was found in TRENDnet TV-IP110WN 1.2.2 and classified as problematic. Affected by this issue is some unknown functionality of the file /server/boa.conf of the component Embedded Boa Web Server. The manipulation leads to least privilege violation. Local access is required to approach this attack. The complexity of an attack is rather high. The exploitation is known to be difficult. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

CVSS3: 7
fstec
около 1 месяца назад

Уязвимость встроенного веб-сервера boa (/server/boa.conf) микропрограммного обеспечения IP-камер TRENDnet TV-IP110WN, позволяющая нарушителю повысить свои привилегии и получить полный контроль над устройством

EPSS

Процентиль: 1%
0.00012
Низкий

6.4 Medium

CVSS4

7 High

CVSS3

Дефекты

CWE-266