Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jxjx-jw7q-vw57

Опубликовано: 10 мая 2023
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

An issue was discovered on GL.iNet devices before 3.216. Through the software installation feature, it is possible to install arbitrary software, such as a reverse shell, because the restrictions on the available package list are limited to client-side verification. It is possible to install software from the filesystem, the package list, or a URL.

An issue was discovered on GL.iNet devices before 3.216. Through the software installation feature, it is possible to install arbitrary software, such as a reverse shell, because the restrictions on the available package list are limited to client-side verification. It is possible to install software from the filesystem, the package list, or a URL.

EPSS

Процентиль: 70%
0.00619
Низкий

9.8 Critical

CVSS3

Связанные уязвимости

CVSS3: 9.8
nvd
больше 2 лет назад

An issue was discovered on GL.iNet devices before 3.216. Through the software installation feature, it is possible to install arbitrary software, such as a reverse shell, because the restrictions on the available package list are limited to client-side verification. It is possible to install software from the filesystem, the package list, or a URL.

EPSS

Процентиль: 70%
0.00619
Низкий

9.8 Critical

CVSS3