Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m8p9-q9xx-54j2

Опубликовано: 26 нояб. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 8

Описание

TRENDnet TEW-657BRM 1.00.1 has an authenticated remote OS command injection vulnerability in the setup.cgi binary, exploitable via the HTTP parameters "command", "todo", and "next_file," which allows an attacker to execute arbitrary commands with root privileges.

TRENDnet TEW-657BRM 1.00.1 has an authenticated remote OS command injection vulnerability in the setup.cgi binary, exploitable via the HTTP parameters "command", "todo", and "next_file," which allows an attacker to execute arbitrary commands with root privileges.

EPSS

Процентиль: 56%
0.00341
Низкий

8 High

CVSS3

Дефекты

CWE-78

Связанные уязвимости

CVSS3: 8
nvd
2 месяца назад

TRENDnet TEW-657BRM 1.00.1 has an authenticated remote OS command injection vulnerability in the setup.cgi binary, exploitable via the HTTP parameters "command", "todo", and "next_file," which allows an attacker to execute arbitrary commands with root privileges.

EPSS

Процентиль: 56%
0.00341
Низкий

8 High

CVSS3

Дефекты

CWE-78