← Retour à la recherche de CVE

CVE-2026-35906

T3 Technology CPE

Description

An undocumented debug CGI endpoint in T3 Technology CPE models T625Pro v1.0.07, T6825G v1.0.03 allows unauthenticated attackers to execute arbitrary system commands as root via supplying a crafted HTTP query string.

CVSS 9.6EPSS 0.466%Risque 1
Voir la source
Publication
2026-06-04 15:16:50
Versions concernées
<=1.0.07
Type
Micrologiciel
Vecteur
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H