OpenWRT LuCI是OpenWRT社区开源的一个网页管理界面。 OpenWRT LuCI存在输入验证错误漏洞,该漏洞源于ACL不一致,允许低权限认证LuCI用户访问后端容器管理路由,通过lxc_name参数中的/.%2E进行路径遍历,逃逸容器目录并控制通过lxc.hook.start-host执行的主机侧脚本,可能导致以root权限执行代码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
| CVE-2026-72841 | 9.9 CRITICAL | luci-app-openvpn Path Traversal RCE via instance_name2 |
| CVE-2026-72840 | 8.8 HIGH | OpenWrt LuCI luci-mod-system-mounts ACL Root RCE via Crontab Write |
No comments yet