Количество 3
Количество 3
CVE-2025-70161
EDIMAX BR-6208AC V2_1.02 is vulnerable to Command Injection. This arises because the pppUserName field is directly passed to a shell command via the system() function without proper sanitization. An attacker can exploit this by injecting malicious commands into the pppUserName field, allowing arbitrary code execution.
GHSA-44vp-c93r-6656
EDIMAX BR-6208AC V2_1.02 is vulnerable to Command Injection. This arises because the pppUserName field is directly passed to a shell command via the system() function without proper sanitization. An attacker can exploit this by injecting malicious commands into the pppUserName field, allowing arbitrary code execution.
BDU:2026-05046
Уязвимость функции system() микропрограммного обеспечения маршрутизаторов EDIMAX BR-6208AC, позволяющая нарушителю повысить свои привилегии и выполнить произвольные команды
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2025-70161 EDIMAX BR-6208AC V2_1.02 is vulnerable to Command Injection. This arises because the pppUserName field is directly passed to a shell command via the system() function without proper sanitization. An attacker can exploit this by injecting malicious commands into the pppUserName field, allowing arbitrary code execution. | CVSS3: 9.8 | 24% Средний | 7 месяцев назад | |
GHSA-44vp-c93r-6656 EDIMAX BR-6208AC V2_1.02 is vulnerable to Command Injection. This arises because the pppUserName field is directly passed to a shell command via the system() function without proper sanitization. An attacker can exploit this by injecting malicious commands into the pppUserName field, allowing arbitrary code execution. | CVSS3: 9.8 | 24% Средний | 7 месяцев назад | |
BDU:2026-05046 Уязвимость функции system() микропрограммного обеспечения маршрутизаторов EDIMAX BR-6208AC, позволяющая нарушителю повысить свои привилегии и выполнить произвольные команды | CVSS3: 9.8 | 24% Средний | 7 месяцев назад |
Уязвимостей на страницу