CVE-2022-27374: CSRF
Published Apr 25, 2022
·Updated
Tenda AX12 V22.03.01.21CN was discovered to contain a Cross-Site Request Forgery (CSRF) via the function sub42E328 at /goform/SysToolReboot.
Affected Software
2 affected components
Tenda Ax12 Firmware=22.03.01.21_cn
Tenda AX12
Event History
Apr 25, 2022
CVE Published
via MITRE·03:46 PM
Data Sourced
via MITRE·03:46 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for Tenda AX12 V22.03.01.21_CN?
The vulnerability ID for Tenda AX12 V22.03.01.21_CN is CVE-2022-27374.
2
What is the severity of CVE-2022-27374?
The severity of CVE-2022-27374 is high, with a CVSS score of 6.5.
3
What is the affected software of CVE-2022-27374?
The affected software of CVE-2022-27374 is Tenda AX12 Firmware version 22.03.01.21_CN.
4
What is the CWE (Common Weakness Enumeration) category of CVE-2022-27374?
The CWE category of CVE-2022-27374 is CWE-352 (Cross-Site Request Forgery).
5
Where can I find more information about CVE-2022-27374?
You can find more information about CVE-2022-27374 at the following link: [https://github.com/tianhui999/myCVE/blob/main/AX12/AX12.md](https://github.com/tianhui999/myCVE/blob/main/AX12/AX12.md)