Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-92gj-cjfc-w72m

Опубликовано: 31 дек. 2021
Источник: github
Github: Не прошло ревью

Описание

Netgear Nighthawk R6700 version 1.0.4.120 does not have sufficient protections for the UART console. A malicious actor with physical access to the device is able to connect to the UART port via a serial connection and execute commands as the root user without authentication.

Netgear Nighthawk R6700 version 1.0.4.120 does not have sufficient protections for the UART console. A malicious actor with physical access to the device is able to connect to the UART port via a serial connection and execute commands as the root user without authentication.

EPSS

Процентиль: 13%
0.00044
Низкий

Дефекты

CWE-287

Связанные уязвимости

CVSS3: 6.8
nvd
около 4 лет назад

Netgear Nighthawk R6700 version 1.0.4.120 does not have sufficient protections for the UART console. A malicious actor with physical access to the device is able to connect to the UART port via a serial connection and execute commands as the root user without authentication.

EPSS

Процентиль: 13%
0.00044
Низкий

Дефекты

CWE-287