Описание
includes/configure_client.php in RaspAP 2.6.6 allows attackers to execute commands via command injection.
Ссылки
- Product
- Third Party Advisory
- ExploitThird Party AdvisoryVDB EntryURL Repurposed
- Product
- Third Party Advisory
- ExploitThird Party AdvisoryVDB EntryURL Repurposed
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:raspap:raspap:2.6.6:*:*:*:*:*:*:*
EPSS
Процентиль: 95%
0.18635
Средний
8.8 High
CVSS3
6.5 Medium
CVSS2
Дефекты
CWE-77
Связанные уязвимости
EPSS
Процентиль: 95%
0.18635
Средний
8.8 High
CVSS3
6.5 Medium
CVSS2
Дефекты
CWE-77