CVE-2018-17534: Teltonika RUT900 Firmware

Medium severity, CVSS 6.8. EPSS: 0.7% chance of exploitation in the next 30 days.

Teltonika RUT9XX routers with firmware before 00.04.233 provide a root terminal on a serial interface without proper access control. This allows attackers with physical access to execute arbitrary commands with root privileges.

Affected products

  • Teltonika RUT900 Firmware: before 00.04.233 (fixed in 00.04.233)
  • Teltonika RUT950 Firmware: before 00.04.233 (fixed in 00.04.233)
  • Teltonika RUT955 Firmware: before 00.04.233 (fixed in 00.04.233)

Published 2018-10-15. Last modified 2026-06-17.