Логотип exploitDog
bind:CVE-2024-34338
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-34338

Количество 2

Количество 2

nvd логотип

CVE-2024-34338

больше 1 года назад

Tenda O3V2 with firmware versions V1.0.0.10 and V1.0.0.12 was discovered to contain a Blind Command Injection via dest parameter in /goform/getTraceroute. This vulnerability allows attackers to execute arbitrary commands with root privileges. Authentication is required to exploit this vulnerability.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-5pm7-95xh-g4vm

больше 1 года назад

A Blind command injection vulnerability in Tenda O3V2 V1.0.0.12 and earlier allows remote attackers to execute operating system commands via dest parameter in /goform/getTraceroute

CVSS3: 7.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-34338

Tenda O3V2 with firmware versions V1.0.0.10 and V1.0.0.12 was discovered to contain a Blind Command Injection via dest parameter in /goform/getTraceroute. This vulnerability allows attackers to execute arbitrary commands with root privileges. Authentication is required to exploit this vulnerability.

CVSS3: 7.2
3%
Низкий
больше 1 года назад
github логотип
GHSA-5pm7-95xh-g4vm

A Blind command injection vulnerability in Tenda O3V2 V1.0.0.12 and earlier allows remote attackers to execute operating system commands via dest parameter in /goform/getTraceroute

CVSS3: 7.2
3%
Низкий
больше 1 года назад

Уязвимостей на страницу