First published: Tue Jan 10 2023(Updated: )
An information disclosure vulnerability exists in the cm_processREQ_NC opcode of Asus RT-AX82U 3.0.0.4.386_49674-ge182230 router's configuration service. A specially-crafted network packets can lead to a disclosure of sensitive information. An attacker can send a network request to trigger this vulnerability.
Credit: talos-cna@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Asus Rt-ax82u Firmware | =3.0.0.4.386_49674-ge182230 | |
Asus RT-AX82U |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-38105 is an information disclosure vulnerability in the cm_processREQ_NC opcode of Asus RT-AX82U 3.0.0.4.386_49674-ge182230 router's configuration service.
CVE-2022-38105 has a severity rating of 7.5 (High).
CVE-2022-38105 affects Asus RT-AX82U firmware version 3.0.0.4.386_49674-ge182230 by allowing a specially-crafted network packet to disclose sensitive information.
No, Asus RT-AX82U is not vulnerable to CVE-2022-38105.
To fix CVE-2022-38105, it is recommended to apply the latest firmware update provided by Asus for the RT-AX82U router.