Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2020-5769

15
FAUCET Score

CVE-2020-5769 describes a persistent cross-site scripting (XSS) vulnerability in Teltonika TRB2_R_00.02.02 firmware affecting Teltonika Networks TRB245 gateways. An authenticated attacker can inject malicious client-side code into the "DATA TO SERVER" configuration, leading to a medium severity CVSS score of 5.4. While the attack requires user interaction (UI:R) and authentication (PR:L), successful exploitation could result in limited confidentiality and integrity impacts. There is currently no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion surrounding this vulnerability.

Impacted Technologies

VendorProductVersion(s)CPE
trb2_r_00.02.02CPE matchmatch criteria
cpe:2.3:o:teltonika-networks:gateway_trb245_firmware:trb2_r_00.02.02:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

5.4MEDIUM

CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
REQUIRED
Scope
CHANGED
Confidentiality Impact
LOW
Integrity Impact
LOW
Availability Impact
NONE
Exploitability Score
2.3
Impact Score
2.7
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.64%
Probability of exploitation in next 30 days
EPSS Percentile
46.8%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0064 is in the 78th percentile among its peer group of 15,239 CVEs.

Social Chatter

No social media mentions found for this CVE.

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Patches (8)

esetvendor investigatingvia llm_extracted
hyperledgervendor investigatingvia llm_extracted
nxpvendor investigatingvia llm_extracted
omronvendor investigatingvia llm_extracted
openfirevendor investigatingvia llm_extracted
openstackvendor investigatingvia llm_extracted
pnpmvendor investigatingvia llm_extracted
twiliovendor investigatingvia llm_extracted

Vendor Advisories (8)

nxpllm-nxp-fa89650a0945324eLOW

Teltonika Gateway TRB245 Stored Cross-site Scripting

Jul 16, 2020
openstackllm-openstack-4d0c89d5ee488826LOW

Teltonika Gateway TRB245 Stored Cross-site Scripting

Jul 16, 2020
hyperledgerllm-hyperledger-6828c91fb214ae4fLOW

Teltonika Gateway TRB245 Stored Cross-site Scripting

Jul 16, 2020
pnpmllm-pnpm-7e85671c6ef463f5LOW

Teltonika Gateway TRB245 Stored Cross-site Scripting

Jul 16, 2020
omronllm-omron-f3ebffd163811651LOW

Teltonika Gateway TRB245 Stored Cross-site Scripting

Jul 16, 2020
twiliollm-twilio-6d994bc6b8ac2252LOW

Teltonika Gateway TRB245 Stored Cross-site Scripting

Jul 16, 2020
openfirellm-openfire-5948d7d60de3d132LOW

Teltonika Gateway TRB245 Stored Cross-site Scripting

Jul 16, 2020
esetllm-eset-2f1db370f2274900LOW

Teltonika Gateway TRB245 Stored Cross-site Scripting

Jul 16, 2020

References

tenable.com / security/research/tra-2020-43-0
ExploitThird Party Advisory