CVE-2022-27375: CSRF
Published Apr 25, 2022
·Updated
Tenda AX12 V22.03.01.21CN was discovered to contain a Cross-Site Request Forgery (CSRF) via the function sub422168 at /goform/WifiExtraSet.
Affected Software
2 affected components
Tenda Ax12 Firmware=22.03.01.21_cn
Tenda AX12
Event History
Apr 25, 2022
CVE Published
via MITRE·03:46 PM
Data Sourced
via MITRE·03:46 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this Tenda AX12 firmware vulnerability?
The vulnerability ID for this Tenda AX12 firmware vulnerability is CVE-2022-27375.
2
What type of vulnerability is CVE-2022-27375?
CVE-2022-27375 is a Cross-Site Request Forgery (CSRF) vulnerability.
3
What is the severity of CVE-2022-27375?
The severity of CVE-2022-27375 is high with a CVSS score of 6.5.
4
What is the affected software for CVE-2022-27375?
The affected software for CVE-2022-27375 is Tenda AX12 Firmware version 22.03.01.21_CN.
5
How can I fix the CVE-2022-27375 vulnerability?
To fix the CVE-2022-27375 vulnerability, update your Tenda AX12 Firmware to the latest version provided by Tenda.