Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7p4j-prhq-8ffm

Опубликовано: 14 янв. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 10

Описание

An os command injection vulnerability exists in the touchlist_sync.cgi touchlistsync() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted set of HTTP requests can lead to arbitrary code execution. An attacker can send an HTTP request to trigger this vulnerability.

An os command injection vulnerability exists in the touchlist_sync.cgi touchlistsync() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted set of HTTP requests can lead to arbitrary code execution. An attacker can send an HTTP request to trigger this vulnerability.

EPSS

Процентиль: 89%
0.04676
Низкий

10 Critical

CVSS3

Дефекты

CWE-77

Связанные уязвимости

CVSS3: 10
nvd
около 1 года назад

An os command injection vulnerability exists in the touchlist_sync.cgi touchlistsync() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted set of HTTP requests can lead to arbitrary code execution. An attacker can send an HTTP request to trigger this vulnerability.

EPSS

Процентиль: 89%
0.04676
Низкий

10 Critical

CVSS3

Дефекты

CWE-77