Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vv7q-66vv-9jp3

Опубликовано: 02 мая 2025
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

Improper access controls in the web management portal of the Tenda RX2 Pro 16.03.30.14 allows an unauthenticated remote attacker to enable telnet access to the router's OS by sending a /goform/telnet web request.

Improper access controls in the web management portal of the Tenda RX2 Pro 16.03.30.14 allows an unauthenticated remote attacker to enable telnet access to the router's OS by sending a /goform/telnet web request.

EPSS

Процентиль: 94%
0.07154
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-287

Связанные уязвимости

CVSS3: 6.5
nvd
больше 1 года назад

Improper access controls in the web management portal of the Tenda RX2 Pro 16.03.30.14 allows an unauthenticated remote attacker to enable telnet access to the router's OS by sending a /goform/telnet web request.

CVSS3: 6.5
fstec
больше 1 года назад

Уязвимость реализации протокола telnet микропрограммного обеспечения маршрутизаторов Tenda RX2 Pro, позволяющая нарушителю обойти ограничения безопасности и выполнить произвольные команды

EPSS

Процентиль: 94%
0.07154
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-287