Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
AVM FRITZ!OS before 6.30 extracts the contents of firmware updates before verifying their cryptographic signature, which allows remote attackers to create symlinks or overwrite critical files, and consequently execute arbitrary code, via a crafted firmware image.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
AVM FRITZ!OS 加密问题漏洞
Vulnerability Description
AVM FRITZ!OS是德国AVM公司的一套使用在Fritz!Box无线路由器产品中的操作系统。 AVM FRITZ!OS 6.30之前版本中存在安全漏洞,该漏洞源于程序在验证固件升级的加密签名前就提取了其内容。远程攻击者可借助特制的固件镜像利用该漏洞创建符号链接或覆盖重要文件,执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A