
Reaproveitei uma vulnerabilidade que encontrei CVE-2020-28695, o modelo do meu roteador não e recente porém o firmware é o atual, consegui abrir portas, abrir ssh, abrir telnet, ACS via HTTP, Escrita de parâmetros sem autenticação
Signal is active with 1 mentions in latest observed window
Recommended action window: Monitor and triage in normal cycle
NVD description
Askey Fiber Router RTF3505VW-N1 BR_SV_g000_R3505VWN1001_s32_7 devices allow Remote Code Execution and retrieval of admin credentials to log into the Dashboard or login via SSH, leading to code execution as root.
Priority
LOW
Exploitation
NONE
PoC
YES
Patch
NONE
Momentum
NONE
If you run products in this scope, you should treat this CVE as relevant to your environment.
1 version affected across 2 products

Reaproveitei uma vulnerabilidade que encontrei CVE-2020-28695, o modelo do meu roteador não e recente porém o firmware é o atual, consegui abrir portas, abrir ssh, abrir telnet, ACS via HTTP, Escrita de parâmetros sem autenticação
2 of 2 entries
| Part | Vendor | Product | Version | Target SW | Target HW |
|---|---|---|---|---|---|
| HW | askey | rtf3505vw-n1_br_sv_g000_r3505vwn1001_s32_7 | - | - | - |
| OS | askey | rtf3505vw-n1_br_sv_g000_r3505vwn1001_s32_7_firmware | - | - | - |