Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
5.3
CVE-2020-10871
- EPSS 1.68%
- Veröffentlicht 23.03.2020 20:15:11
- Zuletzt bearbeitet 21.11.2024 04:56:15
In OpenWrt LuCI git-20.x, remote unauthenticated attackers can retrieve the list of installed packages and services. NOTE: the vendor disputes the significance of this report because, for instances reachable by an unauthenticated actor, the same info...
9.8
CVE-2019-12272
- EPSS 7.37%
- Veröffentlicht 23.05.2019 15:30:12
- Zuletzt bearbeitet 21.11.2024 04:22:32
In OpenWrt LuCI through 0.10, the endpoints admin/status/realtime/bandwidth_status and admin/status/realtime/wireless_status of the web application are affected by a command injection vulnerability.