CVE-2018-17534

EUVD-2018-9287
Teltonika RUT9XX routers with firmware before 00.04.233 provide a root terminal on a serial interface without proper access control. This allows attackers with physical access to execute arbitrary commands with root privileges.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
6.8 MEDIUM
PHYSICAL
LOW
NONE
CVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 47%
Affected Products (NVD)
VendorProductVersion
teltonikarut900_firmware
𝑥
< 00.04.233
teltonikarut950_firmware
𝑥
< 00.04.233
teltonikarut955_firmware
𝑥
< 00.04.233
𝑥
= Vulnerable software versions