CVE-2020-5772: Input Validation
Published Aug 3, 2020
·Updated
Improper Input Validation in Teltonika firmware TRB2R00.02.04.01 allows a remote, authenticated attacker to gain root privileges by uploading a malicious package file.
Affected Software
2 affected components
Teltonika-networks Trb245 Firmware=00.02.04.01
Teltonika-networks Trb245
Event History
Aug 3, 2020
CVE Published
via MITRE·07:53 PM
Data Sourced
via MITRE·07:53 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this Teltonika firmware vulnerability?
The vulnerability ID is CVE-2020-5772.
2
What is the severity of CVE-2020-5772?
The severity of CVE-2020-5772 is high.
3
How does CVE-2020-5772 allow an attacker to gain root privileges?
CVE-2020-5772 allows a remote, authenticated attacker to gain root privileges by uploading a malicious package file.
4
Which version of Teltonika firmware is affected by CVE-2020-5772?
Teltonika firmware TRB2_R_00.02.04.01 is affected by CVE-2020-5772.
5
Is Teltonika firmware TRB245 affected by CVE-2020-5772?
No, Teltonika firmware TRB245 is not affected by CVE-2020-5772.