Redlion

N-tron 702-w Firmware

5 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 5.82%
  • Veröffentlicht 01.09.2020 21:15:12
  • Zuletzt bearbeitet 21.11.2024 05:06:55

The affected product is vulnerable due to an undocumented interface found on the device, which may allow an attacker to execute commands as root on the device on the N-Tron 702-W / 702M12-W (all versions).

Exploit
  • EPSS 1.99%
  • Veröffentlicht 01.09.2020 21:15:12
  • Zuletzt bearbeitet 21.11.2024 05:06:56

The affected product is vulnerable to stored cross-site scripting, which may allow an attacker to remotely execute arbitrary code to gain access to sensitive data on the N-Tron 702-W / 702M12-W (all versions).

  • EPSS 0.26%
  • Veröffentlicht 01.09.2020 21:15:12
  • Zuletzt bearbeitet 21.11.2024 05:06:56

The affected product is vulnerable to cross-site request forgery, which may allow an attacker to modify different configurations of a device by luring an authenticated user to click on a crafted link on the N-Tron 702-W / 702M12-W (all versions).

Exploit
  • EPSS 1.99%
  • Veröffentlicht 01.09.2020 21:15:12
  • Zuletzt bearbeitet 21.11.2024 05:06:56

The affected product is vulnerable to reflected cross-site scripting, which may allow an attacker to remotely execute arbitrary code and perform actions in the context of an attacked user on the N-Tron 702-W / 702M12-W (all versions).

Exploit
  • EPSS 1.31%
  • Veröffentlicht 20.11.2017 15:29:00
  • Zuletzt bearbeitet 09.06.2025 16:15:26

In the add_match function in libbb/lineedit.c in BusyBox through 1.27.2, the tab autocomplete feature of the shell, used to get a list of filenames in a directory, does not sanitize filenames and results in executing any escape sequence in the termin...