GL.iNet A1300
cpe:2.3:o:gl-inet:a1300_firmware:*:*:*:*:*:*:*, +3 more
- ~4.8
A vulnerability exists in GL.iNet router models A1300, AX1800, AXT1800, MT2500, MT3000, MT6000, X3000, and XE3000, all running firmware version 4.8.x. The issue arises from a hard-coded cryptographic key in the glnassys component, which can be exploited remotely. This flaw allows unauthorized access to network storage-related interfaces, potentially leading to command execution. The vulnerability requires a high level of complexity to exploit.
Exploitation of this vulnerability allows unauthorized users to access network storage interfaces and execute commands on the device.
Users are advised to upgrade to GL.iNet firmware version 4.9.0 or later, where this vulnerability has been addressed.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.