TOTOLink A7100RU
cpe:2.3:o:totolink:a7100ru_firmware:*:*:*:*:*:*:*, +1 more
- V7.4
A vulnerability exists in TOTOLink A7100RU V7.4, A950RG V5.9, and T10 V5.9, where the 'chroot_local_user' option is enabled in the vsftpd configuration. This misconfiguration can result in unauthorized access to system files, privilege escalation, or the compromised server being used as a pivot point for attacks on the internal network.
Exploitation of this vulnerability could lead to unauthorized access to system files, privilege escalation, or use of the compromised server as a pivot point for internal network attacks.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.