Vulnerability Description
The Telus Wi-Fi Hub (PRV65B444A-S-TS) with firmware version 3.00.20 is affected by an authenticated command injection vulnerability in multiple parameters passed to tr69_cmd.cgi. A remote attacker connected to the router's LAN and authenticated with a super user account, or using a bypass authentication vulnerability like CVE-2021-20090 could leverage this issue to run commands or gain a shell as root on the target device.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Telus | Prv65B444A-S-Ts Firmware | 3.00.20 |
| Telus | Prv65B444A-S-Ts | - |
Related Weaknesses (CWE)
References
- https://www.tenable.com/security/research/tra-2021-41ExploitThird Party Advisory
- https://www.tenable.com/security/research/tra-2021-41ExploitThird Party Advisory
FAQ
What is CVE-2021-20122?
CVE-2021-20122 is a vulnerability with a CVSS score of 7.2 (HIGH). The Telus Wi-Fi Hub (PRV65B444A-S-TS) with firmware version 3.00.20 is affected by an authenticated command injection vulnerability in multiple parameters passed to tr69_cmd.cgi. A remote attacker con...
How severe is CVE-2021-20122?
CVE-2021-20122 has been rated HIGH with a CVSS base score of 7.2/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-20122?
Check the references section above for vendor advisories and patch information. Affected products include: Telus Prv65B444A-S-Ts Firmware, Telus Prv65B444A-S-Ts.