CVE-2022-37056: OS Command Injection
Published Aug 28, 2022
·Updated
D-Link GO-RT-AC750 GORTAC750revAv101b03 and GO-RT-AC750revBFWv200b02 is vulnerable to Command Injection via /cgibin, hnapmain,
Affected Software
7 affected components
Dlink Go-rt-ac750 Firmware=reva_1.01b03
Dlink Go-rt-ac750 Firmware=revb_2.00b02
Dlink Go-rt-ac750
All of the following
Dlink Go-rt-ac750 Firmware=2.00b02
Dlink Go-rt-ac750=revision_b
All of the following
Dlink Go-rt-ac750 Firmware=1.01b03
Dlink Go-rt-ac750=revision_a
Remediation
Event History
Aug 28, 2022
CVE Published
via MITRE·04:03 PM
Data Sourced
via MITRE·04:03 PM
DescriptionWeakness
Data Sourced
via NVD·05:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Dec 29, 2024
News Published
via BleepingComputer·03:09 PM
Dec 30, 2024
News Published
via BleepingComputer·07:17 AM
Frequently Asked Questions
1
What is the severity of CVE-2022-37056?
The severity of CVE-2022-37056 is critical with a severity value of 9.8.
2
Which D-Link products are affected by CVE-2022-37056?
D-Link GO-RT-AC750 GORTAC750_revA_v101b03 and GO-RT-AC750_revB_FWv200b02 firmware versions are affected.
3
What is the vulnerability type of CVE-2022-37056?
CVE-2022-37056 is a command injection vulnerability.
4
How can I fix CVE-2022-37056?
To fix CVE-2022-37056, it is recommended to install the latest firmware version provided by D-Link.
5
Where can I find more information about CVE-2022-37056?
More information about CVE-2022-37056 can be found in the D-Link security bulletin and the provided reference links.