Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h933-4qv8-27xj

Опубликовано: 10 дек. 2024
Источник: github
Github: Не прошло ревью
CVSS4: 5.9

Описание

In Teltonika Networks RUTOS devices, running on versions 7.0 to 7.8 (excluding) and TSWOS devices running on versions 1.0 to 1.3 (excluding), due to incorrect permission handling a vulnerability exists which allows a lower privileged user with default permissions to access critical device resources via the API.

In Teltonika Networks RUTOS devices, running on versions 7.0 to 7.8 (excluding) and TSWOS devices running on versions 1.0 to 1.3 (excluding), due to incorrect permission handling a vulnerability exists which allows a lower privileged user with default permissions to access critical device resources via the API.

EPSS

Процентиль: 21%
0.00067
Низкий

5.9 Medium

CVSS4

Дефекты

CWE-732

Связанные уязвимости

nvd
около 1 года назад

In Teltonika Networks RUTOS devices, running on versions 7.0 to 7.8 (excluding) and TSWOS devices running on versions 1.0 to 1.3 (excluding), due to incorrect permission handling a vulnerability exists which allows a lower privileged user with default permissions to access critical device resources via the API.

EPSS

Процентиль: 21%
0.00067
Низкий

5.9 Medium

CVSS4

Дефекты

CWE-732