The management interface for the Teltonika RUT9XX routers (aka LuCI) with firmware 00.03.265 and earlier allows remote attackers to execute arbitrary commands with root privileges via shell metacharacters in the username parameter in a login request.
Metrics
Affected Vendors & Products
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T16:27:22.604Z
Reserved: 2017-04-25T00:00:00
Link: CVE-2017-8116

No data.

Status : Deferred
Published: 2017-07-03T16:29:00.557
Modified: 2025-04-20T01:37:25.860
Link: CVE-2017-8116

No data.

No data.