Gl-Inet Gl-Ar300M-Lite Firmware vulnerabilities
4 known vulnerabilities affecting gl-inet/gl-ar300m-lite_firmware.
Total CVEs
4
CISA KEV
0
Public exploits
4
Exploited in wild
0
Severity breakdown
HIGH3MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2019-6272P2HIGHCVSS 8.8PoCv2.272019-03-21
CVE-2019-6272 [HIGH] CWE-77 CVE-2019-6272: Command injection vulnerability in login_cgi in GL.iNet GL-AR300M-Lite devices with firmware 2.27 al
Command injection vulnerability in login_cgi in GL.iNet GL-AR300M-Lite devices with firmware 2.27 allows remote attackers to execute arbitrary code.
nvd
CVE-2019-6275P2HIGHCVSS 8.8PoCv2.272019-03-21
CVE-2019-6275 [HIGH] CWE-77 CVE-2019-6275: Command injection vulnerability in firmware_cgi in GL.iNet GL-AR300M-Lite devices with firmware 2.27
Command injection vulnerability in firmware_cgi in GL.iNet GL-AR300M-Lite devices with firmware 2.27 allows remote attackers to execute arbitrary code.
nvd
CVE-2019-6274P2HIGHCVSS 8.8PoCv2.272019-03-21
CVE-2019-6274 [HIGH] CWE-22 CVE-2019-6274: Directory traversal vulnerability in storage_cgi in GL.iNet GL-AR300M-Lite devices with firmware 2.2
Directory traversal vulnerability in storage_cgi in GL.iNet GL-AR300M-Lite devices with firmware 2.27 allows remote attackers to have unspecified impact via directory traversal sequences.
nvd
CVE-2019-6273P3MEDIUMCVSS 6.5PoCv2.272019-03-21
CVE-2019-6273 [MEDIUM] CWE-22 CVE-2019-6273: download_file in GL.iNet GL-AR300M-Lite devices with firmware 2.27 allows remote attackers to downlo
download_file in GL.iNet GL-AR300M-Lite devices with firmware 2.27 allows remote attackers to download arbitrary files.
nvd