Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The Telus Wi-Fi Hub (PRV65B444A-S-TS) with firmware version 3.00.20 is affected by an authenticated command injection vulnerability in multiple parameters passed to tr69_cmd.cgi. A remote attacker connected to the router's LAN and authenticated with a super user account, or using a bypass authentication vulnerability like CVE-2021-20090 could leverage this issue to run commands or gain a shell as root on the target device.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Telus Wi-Fi Hub 命令注入漏洞
Vulnerability Description
Telus Wi-Fi Hub是加拿大研科(Telus)公司的一个 WiFi 集线器。 Telus Wi-Fi Hub 存在命令注入漏洞,该漏洞源于固件版本为 3.00.20 的 Telus Wi-Fi 集线器 (PRV65B444A-S-TS) 受到传递给 tr69_cmd.cgi 的多个参数中的经过身份验证的命令注入漏洞的影响。 远程攻击者连接到路由器的 LAN 并使用超级用户帐户进行身份验证,或使用诸如 CVE-2021-20090 之类的绕过身份验证漏洞,可以利用此问题在目标设备上以 root 身
CVSS Information
N/A
Vulnerability Type
N/A