Unauthenticated Debug Service. The /sbin/mtk_dut binary...
High severity
Unreviewed
Published
May 29, 2026
to the GitHub Advisory Database
•
Updated May 29, 2026
Description
Published by the National Vulnerability Database
May 29, 2026
Published to the GitHub Advisory Database
May 29, 2026
Last updated
May 29, 2026
Unauthenticated Debug Service. The /sbin/mtk_dut binary is exposed on TCP port 9000 without authentication, allowing any LAN-based attacker to execute arbitrary UCC commands.
References