TROYANOSYVIRUS
Voltar para CVEs

CVE-2021-20121

MEDIUM
4.0

Descricao

The Telus Wi-Fi Hub (PRV65B444A-S-TS) with firmware version 3.00.20 is vulnerable to an authenticated arbitrary file read. An authenticated user with physical access to the device can read arbitrary files from the device by preparing and connecting a specially prepared USB drive to the device, and making a series of crafted requests to the device's web interface.

Detalhes CVE

Pontuacao CVSS v3.14.0
SeveridadeMEDIUM
Vetor CVSSCVSS:3.1/AV:P/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N
Vetor de ataquePHYSICAL
ComplexidadeHIGH
Privilegios necessariosLOW
Interacao do usuarioNONE
Publicado10/11/2021
Ultima modificacao11/21/2024
Fontenvd
Avistamentos honeypot0

Produtos afetados

telus:prv65b444a-s-tstelus:prv65b444a-s-ts_firmware

Referencias

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.