ZeroHour

CVE-2022-25596

CVSS 3.1
8.8 high
EPSS
<1%p46
Published
()
Modified
Description

ASUS RT-AC56U’s configuration function has a heap-based buffer overflow vulnerability due to insufficient validation for the decryption parameter length, which allows an unauthenticated LAN attacker to execute arbitrary code, perform arbitrary operations and disrupt service.

Vendors
asus
Products
rt-ac86u firmware
Weakness
CWE-787
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.