Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r36f-vrxf-7jf9

Опубликовано: 06 янв. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

An issue in H3C M102G HM1A0V200R010 wireless controller and BA1500L SWBA1A0V100R006 wireless access point, there is a misconfiguration vulnerability about vsftpd. Through this vulnerability, all files uploaded anonymously via the FTP protocol is automatically owned by the root user and remote attackers could gain root-level control over the devices.

An issue in H3C M102G HM1A0V200R010 wireless controller and BA1500L SWBA1A0V100R006 wireless access point, there is a misconfiguration vulnerability about vsftpd. Through this vulnerability, all files uploaded anonymously via the FTP protocol is automatically owned by the root user and remote attackers could gain root-level control over the devices.

EPSS

Процентиль: 37%
0.00158
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-276

Связанные уязвимости

CVSS3: 9.8
nvd
около 1 месяца назад

An issue in H3C M102G HM1A0V200R010 wireless controller and BA1500L SWBA1A0V100R006 wireless access point, there is a misconfiguration vulnerability about vsftpd. Through this vulnerability, all files uploaded anonymously via the FTP protocol is automatically owned by the root user and remote attackers could gain root-level control over the devices.

EPSS

Процентиль: 37%
0.00158
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-276