Lucene search

K
prionPRIOn knowledge basePRION:CVE-2020-36178
HistoryJan 06, 2021 - 9:15 p.m.

Command injection

2021-01-0621:15:00
PRIOn knowledge base
www.prio-n.com
3

9.7 High

AI Score

Confidence

High

0.135 Low

EPSS

Percentile

95.6%

oal_ipt_addBridgeIsolationRules on TP-Link TL-WR840N 6_EU_0.9.1_4.16 devices allows OS command injection because a raw string entered from the web interface (an IP address field) is used directly for a call to the system library function (for iptables). NOTE: oal_ipt_addBridgeIsolationRules is not the only function that calls util_execSystem.

CPENameOperatorVersion
tl-wr840n_firmwareeq6.0.0-eu0.9.14.16

9.7 High

AI Score

Confidence

High

0.135 Low

EPSS

Percentile

95.6%

Related for PRION:CVE-2020-36178