CVE-2022-30329: OS Command Injection
Published Jun 16, 2022
·Updated
An issue was found on TRENDnet TEW-831DR 1.0 601.130.1.1356 devices. An OS injection vulnerability exists within the web interface, allowing an attacker with valid credentials to execute arbitrary shell commands.
Affected Software
2 affected components
Trendnet Tew-831dr Firmware=1.0_601.130.1.1356
Trendnet TEW-831DR
Event History
Jun 16, 2022
CVE Published
via MITRE·10:04 PM
Data Sourced
via MITRE·10:04 PM
Description
Frequently Asked Questions
1
What is CVE-2022-30329?
CVE-2022-30329 is an OS injection vulnerability in TRENDnet TEW-831DR 1.0 601.130.1.1356 devices.
2
How severe is CVE-2022-30329?
CVE-2022-30329 has a severity rating of 9.8 (critical).
3
What software versions are affected by CVE-2022-30329?
The affected software version is TRENDnet TEW-831DR 1.0 601.130.1.1356.
4
What is the Common Weakness Enumeration (CWE) ID for CVE-2022-30329?
CVE-2022-30329 is associated with CWE-78, which is the code injection vulnerability weakness.
5
How can an attacker exploit CVE-2022-30329?
An attacker with valid credentials can exploit CVE-2022-30329 by executing arbitrary shell commands through the web interface.