← Späť na vyhľadávanie CVE

CVE-2026-8914

Teltonika Networks RUTOS

Popis

In Teltonika Networks RUTOS devices, running versions 7.22 through 7.23.2 and TSWOS devices running versions 1.09 through 1.09.1, due to unsafe calls to an eval function in rpc-profile, a vulnerability exists where a lower privileged user could perform command injection as the root user.

CVSS 8.4EPSS 0.541%Riziko 0.88
Zobraziť zdroj
Zverejnené
2026-06-05 11:16:37
Dotknuté verzie
<=7.23.2
Typ
Firmvér
Vektor
CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X