7.8
CVE-2020-11618
- EPSS 0.42%
- Veröffentlicht 31.08.2020 15:15:10
- Zuletzt bearbeitet 21.11.2024 04:58:15
- Erkennungen
THOMSON THT741FTA 2.2.1 and Philips DTR3502BFTA DVB-T2 2.2.1 set-top boxes have their TELNET service hardcoded to start on boot, which allows an attacker on the local network to achieve root access via the TELNET protocol.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Thomsonstb ≫ Tht741fta Firmware Version 2.2.1
Philips ≫ Dtr3502bfta Dvb-t2 Firmware Version 2.2.1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.42% | 0.33 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
| NIST | 7.2 | 3.9 | 10 |
AV:L/AC:L/Au:N/C:C/I:C/A:C
|
https://decoded.avast.io/vladislaviliushin/flaws-in-dvb-t2-set-top-boxes-exposed/