Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vfcg-vh6j-gg8j

Опубликовано: 08 авг. 2024
Источник: github
Github: Не прошло ревью
CVSS4: 10
CVSS3: 7.2

Описание

Firmware in KAON AR2140 routers prior to version 4.2.16 is vulnerable to a shell command injection via sending a crafted request to one of the endpoints. In order to exploit this vulnerability, one has to have access to the administrative portal of the router.

Firmware in KAON AR2140 routers prior to version 4.2.16 is vulnerable to a shell command injection via sending a crafted request to one of the endpoints. In order to exploit this vulnerability, one has to have access to the administrative portal of the router.

EPSS

Процентиль: 63%
0.00441
Низкий

10 Critical

CVSS4

7.2 High

CVSS3

Дефекты

CWE-77
CWE-78

Связанные уязвимости

CVSS3: 7.2
nvd
больше 1 года назад

Firmware in KAON AR2140 routers, prior to versions 3.2.50 and 4.2.16, is vulnerable to a shell command injection via sending a crafted request to one of the endpoints. In order to exploit this vulnerability, one has to have access to the administrative portal of the router.

EPSS

Процентиль: 63%
0.00441
Низкий

10 Critical

CVSS4

7.2 High

CVSS3

Дефекты

CWE-77
CWE-78