CVE-2024-29269

HIGH EXPLOITED IN THE WILD NUCLEI

Telesquare TLR-2005KSH - Remote Command Execution

Title source: nuclei

Description

An issue discovered in Telesquare TLR-2005Ksh 1.0.0 and 1.1.4 allows attackers to run arbitrary system commands via the Cmd parameter.

Exploits (8)

nomisec WORKING POC 17 stars
by Chocapikk · remote
https://github.com/Chocapikk/CVE-2024-29269
nomisec WORKING POC 5 stars
by hack-with-rohit · remote
https://github.com/hack-with-rohit/CVE-2024-29269-RCE
nomisec WRITEUP 5 stars
by wutalent · remote
https://github.com/wutalent/CVE-2024-29269
nomisec WORKING POC 5 stars
by K3ysTr0K3R · remote
https://github.com/K3ysTr0K3R/CVE-2024-29269-EXPLOIT
nomisec WORKING POC 1 stars
by YongYe-Security · remote
https://github.com/YongYe-Security/CVE-2024-29269
nomisec WRITEUP 1 stars
by chsxthwik · poc
https://github.com/chsxthwik/CVE-2024-29269
nomisec WORKING POC
by dream434 · remote
https://github.com/dream434/CVE-2024-29269
vulncheck_xdb WORKING POC
remote
https://github.com/Quantum-Hacker/CVE-2024-29269

Nuclei Templates (1)

Telesquare TLR-2005KSH - Remote Command Execution
CRITICALby ritikchaddha
Shodan: title:"Login to TLR-2005KSH"

Scores

CVSS v3 8.8
EPSS 0.9321
EPSS Percentile 99.8%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Exploitation Intel

VulnCheck KEV 2024-09-18
InTheWild.io 2024-09-18

Classification

CWE
CWE-77
Status published

Affected Products (2)

telesquare/tlr-2005ksh_firmware
telesquare/tlr-2005ksh_firmware

Timeline

Published Apr 10, 2024
Tracked Since Feb 18, 2026