Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r43r-p9mv-g2fw

Опубликовано: 05 дек. 2024
Источник: github
Github: Не прошло ревью
CVSS4: 4.3

Описание

This vulnerability exists in the TP-Link Archer C50 due to presence of terminal access on a serial interface without proper access control. An attacker with physical access could exploit this by accessing the UART shell on the vulnerable device. Successful exploitation of this vulnerability could allow the attacker to obtain Wi-Fi credentials of the targeted system.

This vulnerability exists in the TP-Link Archer C50 due to presence of terminal access on a serial interface without proper access control. An attacker with physical access could exploit this by accessing the UART shell on the vulnerable device. Successful exploitation of this vulnerability could allow the attacker to obtain Wi-Fi credentials of the targeted system.

EPSS

Процентиль: 13%
0.00042
Низкий

4.3 Medium

CVSS4

Дефекты

CWE-312

Связанные уязвимости

nvd
около 1 года назад

This vulnerability exists in the TP-Link Archer C50 due to presence of terminal access on a serial interface without proper access control. An attacker with physical access could exploit this by accessing the UART shell on the vulnerable device. Successful exploitation of this vulnerability could allow the attacker to obtain Wi-Fi credentials of the targeted system.

CVSS3: 4.8
fstec
около 1 года назад

Уязвимость веб-интерфейса управления микропрограммного обеспечения Wi‑Fi роутеров TP-Link Archer C50, позволяющая нарушителю получить несанкционированный доступ к учетным данным Wi-Fi целевой системы

EPSS

Процентиль: 13%
0.00042
Низкий

4.3 Medium

CVSS4

Дефекты

CWE-312