First published: Tue Aug 16 2022(Updated: )
Tenda AC9 V15.03.2.21_cn is vulnerable to command injection via goform/SetSysTimeCfg.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tenda Ac9 Firmware | =15.03.2.21_cn | |
Tenda AC9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-36273 is critical with a CVSS score of 9.8.
Tenda AC9 V15.03.2.21_cn firmware version is affected by CVE-2022-36273.
CVE-2022-36273 allows attackers to execute arbitrary commands on Tenda AC9 routers via the goform/SetSysTimeCfg function.
Yes, Tenda AC9 firmware version 15.03.2.21_cn is vulnerable to CVE-2022-36273.
At the moment, there is no official fix available for CVE-2022-36273. It is recommended to update to the latest firmware version once it becomes available.