We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.
Please see our statement on Data Privacy.
Assigner | twcert |
Reserved | 2023-08-29 |
Published | 2023-11-03 |
Updated | 2024-09-04 |
ASUS RT-AX55’s authentication-related function has a vulnerability of insufficient filtering of special characters within its check token module. An authenticated remote attacker can exploit this vulnerability to perform a Command Injection attack to execute arbitrary commands, disrupt the system or terminate services.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
https://www.twcert.org.tw/tw/cp-132-7498-18012-1.html