Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Improper access controls in the web management portal of the Tenda RX2 Pro 16.03.30.14 allows an unauthenticated remote attacker to enable telnet access to the router's OS by sending a /goform/telnet web request.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Tenda RX2 Pro 安全漏洞
Vulnerability Description
ws等都是(WebSockets)开源的产品。ws是一个 Node.js WebSocket 库。roc req等都是(roc)个人开发者的产品。req是一个使用 Black Magic 的简单 Go HTTP 客户端。pillarjs send等都是(pillarjs)开源的产品。send是一个用于将文件从文件系统流式传输为 http 响应的库。 Tenda RX2 Pro 16.03.30.14版本存在安全漏洞,该漏洞源于web管理门户访问控制不当,可能导致未经认证的远程攻击者启用telnet访问。
CVSS Information
N/A
Vulnerability Type
N/A