CVE-2021-45428
50Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendepss 57%
from disclosure to weapon128 days
Published on NVDJan 3
1st PoC+128d
exploitation probability
57%top 1% of all CVEs
observed exploitation
nono source reports it
3 public exploit(s)
TLR-2005KSH is affected by an incorrect access control vulnerability. THe PUT method is enabled so an attacker can upload arbitrary files including HTML and CGI formats.
Affected products
n/a · n/apublic PoCs found — 3
exploitdbwww.exploit-db.com/exploits/50931unverifiedgithubgithub.com/projectforsix/CVE-2021-45428-Defacer★ 0cve_referencepacketstormsecurity.com/files/167101/TLR-2005KSH-Arbitrary-File-Upload.htmlunverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.