CVE-2020-16148: Telmat Accesslog Firmware

High severity, CVSS 7.2. EPSS: 1.9% chance of exploitation in the next 30 days.

The ping page of the administration panel in Telmat AccessLog <= 6.0 (TAL_20180415) allows an attacker to get root shell access via authenticated code injection over the network.

Affected products

  • Telmat Accesslog Firmware: up to and including 6.0\(tal_20180415\)
  • Telmat Educ@box Firmware: up to and including 6.0\(tal_20180415\)
  • Telmat Git@box Firmware: up to and including 6.0\(tal_20180415\)

Published 2020-09-24. Last modified 2026-06-17.