ZeroHour

CVE-2022-40740

CVSS 3.1
7.2 high
EPSS
1%p72
Published
()
Modified
Description

Realtek GPON router has insufficient filtering for special characters. A remote attacker authenticated as an administrator can exploit this vulnerability to perform command injection attacks, to execute arbitrary system command, manipulate system or disrupt service.

Vendors
realtek
Products
usdk, xpon software development kit
Weakness
CWE-78
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.