Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hcrv-c4wc-hj94

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Grandstream GWN7000 firmware version 1.0.9.4 and below allows authenticated remote users to modify the system's crontab via undocumented API. An attacker can use this functionality to execute arbitrary OS commands on the router.

Grandstream GWN7000 firmware version 1.0.9.4 and below allows authenticated remote users to modify the system's crontab via undocumented API. An attacker can use this functionality to execute arbitrary OS commands on the router.

EPSS

Процентиль: 82%
0.01756
Низкий

Связанные уязвимости

CVSS3: 8.8
nvd
больше 5 лет назад

Grandstream GWN7000 firmware version 1.0.9.4 and below allows authenticated remote users to modify the system's crontab via undocumented API. An attacker can use this functionality to execute arbitrary OS commands on the router.

EPSS

Процентиль: 82%
0.01756
Низкий