A low-privileged remote attacker can exploit the ubr-editfile method in wwwubr.cgi, an undocumented and unused API endpoint to write arbitrary files on the system.
Attack Parameters
Impact Assessment
CVSS Vector v3.1
A low-privileged remote attacker can exploit the ubr-editfile method in wwwubr.cgi, an undocumented and unused API endpoint to write arbitrary files on the system.
How easy to exploit
Severity of consequences
Likelihood of exploitation in next 30 days