Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qq76-g6vx-4jqg

Опубликовано: 11 июл. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 5.4

Описание

A hidden remote support feature protected by a static secret in TOTOLINK N300RB firmware version 8.54 allows an authenticated attacker to execute arbitrary OS commands with root privileges.

A hidden remote support feature protected by a static secret in TOTOLINK N300RB firmware version 8.54 allows an authenticated attacker to execute arbitrary OS commands with root privileges.

EPSS

Процентиль: 89%
0.04424
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-306
CWE-78

Связанные уязвимости

CVSS3: 8.8
nvd
22 дня назад

A hidden remote support feature protected by a static secret in TOTOLINK N300RB firmware version 8.54 allows an authenticated attacker to execute arbitrary OS commands with root privileges.

EPSS

Процентиль: 89%
0.04424
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-306
CWE-78