GHSA-f3h5-qqxj-cvgg
GitHub Security Advisory
⚠ Unreviewed
HIGH
Has CVE
Advisory Details
CWE-276: Incorrect Default Permissions vulnerability exists that could allow an authenticated
user with access to the device’s web interface to perform unauthorized file and firmware
uploads when crafting custom web requests.
Related CVEs
Key Information
7.5
/10
Dataset
Last updated: July 4, 2025 6:27 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.