Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cvxm-mgpf-m49w

Опубликовано: 29 янв. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

Multiple Tenda devices are affected by authentication bypass, such as AC15V1.0 Firmware V15.03.05.20_multi?AC5V1.0 Firmware V15.03.06.48_multi and so on. an attacker can obtain sensitive information, and even combine it with authenticated command injection to implement RCE.

Multiple Tenda devices are affected by authentication bypass, such as AC15V1.0 Firmware V15.03.05.20_multi?AC5V1.0 Firmware V15.03.06.48_multi and so on. an attacker can obtain sensitive information, and even combine it with authenticated command injection to implement RCE.

EPSS

Процентиль: 86%
0.02922
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-287

Связанные уязвимости

CVSS3: 9.8
nvd
около 4 лет назад

Multiple Tenda devices are affected by authentication bypass, such as AC15V1.0 Firmware V15.03.05.20_multi?AC5V1.0 Firmware V15.03.06.48_multi and so on. an attacker can obtain sensitive information, and even combine it with authenticated command injection to implement RCE.

EPSS

Процентиль: 86%
0.02922
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-287