First published: Sun Dec 25 2022(Updated: )
Intelbras WiFiber 120AC inMesh before 1-1-220826 allows command injection by authenticated users, as demonstrated by the /boaform/formPing6 and /boaform/formTracert URIs for ping and traceroute.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Intelbras Wifiber 120ac Inmesh Firmware | >=1.1-220216<1.1-220826 | |
Intelbras WiFiber 120AC inMesh |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-40005 is a vulnerability in Intelbras WiFiber 120AC inMesh firmware that allows command injection by authenticated users.
CVE-2022-40005 has a severity score of 8.8, which is considered high.
CVE-2022-40005 affects Intelbras WiFiber 120AC inMesh firmware versions prior to 1-1-220826.
Authenticated users can exploit CVE-2022-40005 by performing command injection through the /boaform/formPing6 and /boaform/formTracert URIs for ping and traceroute.
Currently, there are no known fixes or patches available for CVE-2022-40005.