← Zurück zur CVE-Suche

CVE-2026-8914

Teltonika Networks RUTOS

Beschreibung

In Teltonika Networks RUTOS devices, running versions 7.22 through 7.23.2 and TSWOS devices running versions 1.09 through 1.09.1, due to unsafe calls to an eval function in rpc-profile, a vulnerability exists where a lower privileged user could perform command injection as the root user.

CVSS 8.4EPSS 0.541%Risiko 0.88
Quelle öffnen
Veröffentlicht
2026-06-05 11:16:37
Betroffene Versionen
<=7.23.2
Typ
Firmware
Vektor
CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X