Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-48415

Опубликовано: 21 мая 2025
Источник: nvd
CVSS3: 6.2
EPSS Низкий

Описание

A USB backdoor feature can be triggered by attaching a USB drive that contains specially crafted "salia.ini" files. The .ini file can contain several "commands" that could be exploited by an attacker to export or modify the device configuration, enable an SSH backdoor  or perform other administrative actions. Ultimately, this backdoor also allows arbitrary execution of OS commands.

EPSS

Процентиль: 5%
0.00022
Низкий

6.2 Medium

CVSS3

Дефекты

CWE-749

Связанные уязвимости

CVSS3: 6.2
github
9 месяцев назад

A USB backdoor feature can be triggered by attaching a USB drive that contains specially crafted "salia.ini" files. The .ini file can contain several "commands" that could be exploited by an attacker to export or modify the device configuration, enable an SSH backdoor  or perform other administrative actions. Ultimately, this backdoor also allows arbitrary execution of OS commands.

EPSS

Процентиль: 5%
0.00022
Низкий

6.2 Medium

CVSS3

Дефекты

CWE-749