Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-89mq-5pcv-5m9x

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

The web application portal of the Cobham EXPLORER 710, firmware version 1.07, allows unauthenticated access to port 5454. This could allow an unauthenticated, remote attacker to connect to this port via Telnet and execute 86 Attention (AT) commands, including some that provide unauthenticated, shell-like access to the device.

The web application portal of the Cobham EXPLORER 710, firmware version 1.07, allows unauthenticated access to port 5454. This could allow an unauthenticated, remote attacker to connect to this port via Telnet and execute 86 Attention (AT) commands, including some that provide unauthenticated, shell-like access to the device.

EPSS

Процентиль: 81%
0.01588
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-284
CWE-287

Связанные уязвимости

CVSS3: 9.8
nvd
больше 6 лет назад

The web application portal of the Cobham EXPLORER 710, firmware version 1.07, allows unauthenticated access to port 5454. This could allow an unauthenticated, remote attacker to connect to this port via Telnet and execute 86 Attention (AT) commands, including some that provide unauthenticated, shell-like access to the device.

EPSS

Процентиль: 81%
0.01588
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-284
CWE-287