CVE-2018-17534: High severity teltonika rut900 firmware vulnerability
Teltonika RUT9XX routers with firmware before 00.04.233 provide a root terminal on a serial interface without proper access control. This allows attackers with physical access to execute arbitrary commands with root privileges.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-17534?
CVE-2018-17534 is rated as a high severity vulnerability due to the potential for arbitrary command execution with root privileges.
How do I fix CVE-2018-17534?
To fix CVE-2018-17534, upgrade the Teltonika RUT9XX router firmware to version 00.04.233 or later.
Which devices are affected by CVE-2018-17534?
CVE-2018-17534 affects Teltonika RUT900, RUT950, and RUT955 routers with firmware versions prior to 00.04.233.
What type of access does CVE-2018-17534 exploit?
CVE-2018-17534 exploits physical access to the router's serial interface, allowing unauthorized root command execution.
Is CVE-2018-17534 a remote attack vector?
No, CVE-2018-17534 requires physical access to the device to exploit the vulnerability.