Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r396-g535-84pc

Опубликовано: 28 янв. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

In AXESS ACS (Auto Configuration Server) through 5.2.0, unsanitized user input in the TR069 API allows remote unauthenticated attackers to cause a permanent Denial of Service via crafted TR069 requests on TCP port 9675 or 7547. Rebooting does not resolve the permanent Denial of Service.

In AXESS ACS (Auto Configuration Server) through 5.2.0, unsanitized user input in the TR069 API allows remote unauthenticated attackers to cause a permanent Denial of Service via crafted TR069 requests on TCP port 9675 or 7547. Rebooting does not resolve the permanent Denial of Service.

EPSS

Процентиль: 39%
0.00175
Низкий

7.5 High

CVSS3

Дефекты

CWE-770

Связанные уязвимости

CVSS3: 7.5
nvd
около 1 года назад

In AXESS ACS (Auto Configuration Server) through 5.2.0, unsanitized user input in the TR069 API allows remote unauthenticated attackers to cause a permanent Denial of Service via crafted TR069 requests on TCP port 9675 or 7547. Rebooting does not resolve the permanent Denial of Service.

EPSS

Процентиль: 39%
0.00175
Низкий

7.5 High

CVSS3

Дефекты

CWE-770