Loading HuntDB...

GHSA-f3h5-qqxj-cvgg

GitHub Security Advisory

⚠ Unreviewed HIGH Has CVE

Advisory Details

CWE-276: Incorrect Default Permissions vulnerability exists that could allow an authenticated
user with access to the device’s web interface to perform unauthorized file and firmware
uploads when crafting custom web requests.

Related CVEs

Key Information

GHSA ID
GHSA-f3h5-qqxj-cvgg
Published
June 12, 2024 6:30 PM
Last Modified
July 25, 2024 9:31 PM
CVSS Score
7.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: July 4, 2025 6:27 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.