[0day-rubbish] Teltonika RutOS 00.07.06.21 Authenticated ipsec.lua logread command injection with reflected output (8.8)
Teltonika RutOS 00.07.06.21 has an authenticated ipsec.lua command injection that runs commands as root.
0day Rubbish disclosed an authenticated command injection (CWE-78) in Teltonika RutOS 00.07.06.21, in the ipsec.lua logread handler. An authenticated administrator can run commands as root, and command output is reflected in the JSON response. The issue is scored CVSS 8.8 (AV:N/AC:L/PR:L). The post includes a reproducible proof-of-concept and does not assign a CVE.
51