Vulnerabilities > Teltonika Networks > Trb245 Firmware > High

DATE CVE VULNERABILITY TITLE RISK
2020-10-01 CVE-2020-5786 Cross-Site Request Forgery (CSRF) vulnerability in Teltonika-Networks Trb245 Firmware 00.02.04.03
Cross-site request forgery in Teltonika firmware TRB2_R_00.02.04.3 allows a remote attacker to perform sensitive application actions by tricking legitimate users into clicking a crafted link.
network
low complexity
teltonika-networks CWE-352
8.8
2020-08-03 CVE-2020-5773 Improper Privilege Management vulnerability in Teltonika-Networks Trb245 Firmware 00.02.04.01
Improper Access Control in Teltonika firmware TRB2_R_00.02.04.01 allows a low privileged user to perform unauthorized write operations.
network
low complexity
teltonika-networks CWE-269
8.8
2020-08-03 CVE-2020-5772 Download of Code Without Integrity Check vulnerability in Teltonika-Networks Trb245 Firmware 00.02.04.01
Improper Input Validation in Teltonika firmware TRB2_R_00.02.04.01 allows a remote, authenticated attacker to gain root privileges by uploading a malicious package file.
network
high complexity
teltonika-networks CWE-494
7.5
2020-08-03 CVE-2020-5771 Improper Input Validation vulnerability in Teltonika-Networks Trb245 Firmware 00.02.04.01
Improper Input Validation in Teltonika firmware TRB2_R_00.02.04.01 allows a remote, authenticated attacker to gain root privileges by uploading a malicious backup archive.
network
high complexity
teltonika-networks CWE-20
7.5
2020-08-03 CVE-2020-5770 Cross-Site Request Forgery (CSRF) vulnerability in Teltonika-Networks Trb245 Firmware 00.02.04.01
Cross-site request forgery in Teltonika firmware TRB2_R_00.02.04.01 allows a remote attacker to perform sensitive application actions by tricking legitimate users into clicking a crafted link.
network
low complexity
teltonika-networks CWE-352
8.8