Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-79fv-qmj9-h56m

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

An issue was discovered on Tenda AC15 devices. A remote, unauthenticated attacker can make a request to /goform/telnet, creating a telnetd service on the device. This service is password protected; however, several default accounts exist on the device that are root accounts, which can be used to log in.

An issue was discovered on Tenda AC15 devices. A remote, unauthenticated attacker can make a request to /goform/telnet, creating a telnetd service on the device. This service is password protected; however, several default accounts exist on the device that are root accounts, which can be used to log in.

EPSS

Процентиль: 88%
0.03666
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-1188

Связанные уязвимости

CVSS3: 9.8
nvd
почти 8 лет назад

An issue was discovered on Tenda AC15 devices. A remote, unauthenticated attacker can make a request to /goform/telnet, creating a telnetd service on the device. This service is password protected; however, several default accounts exist on the device that are root accounts, which can be used to log in.

CVSS3: 9.8
fstec
около 8 лет назад

Уязвимость микропрограммного обеспечения маршрутизатора Tenda AC15, позволяющая нарушителю получить доступ к устройству с привилегиями root

EPSS

Процентиль: 88%
0.03666
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-1188