CVE-2022-37057: OS Command Injection
Published Aug 28, 2022
·Updated
D-Link Go-RT-AC750 GORTAC750revAv101b03 and GO-RT-AC750revBFWv200b02 are vulnerable to Command Injection via cgibin, ssdpcgimain.
Affected Software
7 affected components
Dlink Go-rt-ac750 Firmware=reva_1.01b03
Dlink Go-rt-ac750 Firmware=revb_2.00b02
Dlink Go-rt-ac750
All of the following
Dlink Go-rt-ac750 Firmware=2.00b02
Dlink Go-rt-ac750=revision_b
All of the following
Dlink Go-rt-ac750 Firmware=1.01b03
Dlink Go-rt-ac750=revision_a
Remediation
Event History
Aug 28, 2022
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Data Sourced
via NVD·04:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2022-37057?
CVE-2022-37057 is a vulnerability that affects D-Link Go-RT-AC750 routers.
2
What is the severity of CVE-2022-37057?
The severity of CVE-2022-37057 is critical with a score of 9.8.
3
How does CVE-2022-37057 affect D-Link Go-RT-AC750 routers?
CVE-2022-37057 allows for command injection via cgibin and ssdpcgi_main on D-Link Go-RT-AC750 routers.
4
Which versions of D-Link Go-RT-AC750 firmware are affected?
D-Link Go-RT-AC750 GORTAC750_revA_v101b03 and GO-RT-AC750_revB_FWv200b02 are affected by CVE-2022-37057.
5
How can I fix CVE-2022-37057 on my D-Link Go-RT-AC750 router?
To fix CVE-2022-37057, update your D-Link Go-RT-AC750 router firmware to the latest version available.