CVE-2020-28695

Severity CVSS v4.0:
Pending analysis
Type:
CWE-78 OS Command Injections
Publication date:
26/03/2021
Last modified:
12/07/2022

Description

Askey Fiber Router RTF3505VW-N1 BR_SV_g000_R3505VWN1001_s32_7 devices allow Remote Code Execution and retrieval of admin credentials to log into the Dashboard or login via SSH, leading to code execution as root.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:askey:rtf3505vw-n1_br_sv_g000_r3505vwn1001_s32_7_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:askey:rtf3505vw-n1_br_sv_g000_r3505vwn1001_s32_7:-:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools