OpenWRT luci是OpenWRT社区开源的一款路由器配置界面。 OpenWRT luci存在权限许可和访问控制问题漏洞,该漏洞源于luci-app-samba4的读ACL在/usr/sbin/smbd上授予file.exec权限,允许经过身份验证的委托用户通过调用者控制的命令行参数执行Samba守护程序,攻击者可将任意Samba全局选项(如消息命令)传递给root smbd进程,在处理SMB协议消息时触发命令执行。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
| CVE-2026-61875 | 8.8 HIGH | luci-app-upnp Stored XSS via UPnP Port Mapping Description |
| CVE-2026-61876 | 8.8 HIGH | LuCI DHCPv6 Lease Hostname Stored Cross-Site Scripting |
No comments yet