Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wxvm-h7p9-98qp

Опубликовано: 09 мая 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

An issue was discovered on GL.iNet devices running firmware before 3.216. There is an arbitrary file write in which an empty file can be created almost anywhere on the filesystem, as long as the filename and path is no more than 6 characters (the working directory is /www).

An issue was discovered on GL.iNet devices running firmware before 3.216. There is an arbitrary file write in which an empty file can be created almost anywhere on the filesystem, as long as the filename and path is no more than 6 characters (the working directory is /www).

EPSS

Процентиль: 25%
0.00089
Низкий

7.5 High

CVSS3

Дефекты

CWE-77

Связанные уязвимости

CVSS3: 7.5
nvd
больше 2 лет назад

An issue was discovered on GL.iNet devices running firmware before 3.216. There is an arbitrary file write in which an empty file can be created almost anywhere on the filesystem, as long as the filename and path is no more than 6 characters (the working directory is /www).

EPSS

Процентиль: 25%
0.00089
Низкий

7.5 High

CVSS3

Дефекты

CWE-77