Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-28127

Опубликовано: 30 июн. 2022
Источник: nvd
CVSS3: 8.7
CVSS3: 9.1
CVSS2: 6.4
EPSS Низкий

Описание

A data removal vulnerability exists in the web_server /action/remove/ API functionality of Robustel R1510 3.3.0. A specially-crafted network request can lead to arbitrary file deletion. An attacker can send a sequence of requests to trigger this vulnerability.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:robustel:r1510_firmware:3.3.0:*:*:*:*:*:*:*
cpe:2.3:h:robustel:r1510:-:*:*:*:*:*:*:*

EPSS

Процентиль: 90%
0.05308
Низкий

8.7 High

CVSS3

9.1 Critical

CVSS3

6.4 Medium

CVSS2

Дефекты

CWE-20
CWE-22

Связанные уязвимости

CVSS3: 9.1
github
больше 3 лет назад

A data removal vulnerability exists in the web_server /action/remove/ API functionality of Robustel R1510 3.3.0. A specially-crafted network request can lead to arbitrary file deletion. An attacker can send a sequence of requests to trigger this vulnerability.

EPSS

Процентиль: 90%
0.05308
Низкий

8.7 High

CVSS3

9.1 Critical

CVSS3

6.4 Medium

CVSS2

Дефекты

CWE-20
CWE-22
Уязвимость CVE-2022-28127