CVE-2022-34596: OS Command Injection
Published Jul 6, 2022
·Updated
Tenda AX1803 v1.0.0.12890 was discovered to contain a command injection vulnerability via the function WanParameterSetting.
Affected Software
2 affected components
Tenda Ax1803 Firmware=1.0.0.1_2890
Tenda ax1803
Event History
Jul 6, 2022
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is CVE-2022-34596?
CVE-2022-34596 is a command injection vulnerability found in Tenda AX1803 v1.0.0.1_2890.
2
How severe is CVE-2022-34596?
CVE-2022-34596 has a severity rating of 9.8 (critical).
3
What software versions are affected by CVE-2022-34596?
Tenda AX1803 v1.0.0.1_2890 is affected by CVE-2022-34596.
4
What is the Common Weakness Enumeration (CWE) ID for CVE-2022-34596?
CVE-2022-34596 is associated with CWE-77 and CWE-78.
5
Where can I find more information about CVE-2022-34596?
More information about CVE-2022-34596 can be found at https://github.com/zhefox/IOT_Vul/blob/main/Tenda/tendaAX1803/2/readme_en.md