Due to insufficient authorization enforcement, an unauthorized remote attacker can exploit the wwwupdate.cgi endpoint to upload and apply arbitrary updates.
Attack Parameters
Impact Assessment
CVSS Vector v3.1
Due to insufficient authorization enforcement, an unauthorized remote attacker can exploit the wwwupdate.cgi endpoint to upload and apply arbitrary updates.
How easy to exploit
Severity of consequences
Likelihood of exploitation in next 30 days