First published: Wed Jul 31 2024(Updated: )
A command injection vulnerability could allow an authenticated user to execute operating system commands as root via a specially crafted API request.
Credit: psirt@lenovo.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Motorola Q14 Firmware | <1.5.0.16 | |
Motorola Q14 Firmware |
Update Motorola Q14 Mesh Router firmware to v1.5.0.16 or later.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-4002 is classified as a high-severity command injection vulnerability.
To fix CVE-2022-4002, upgrade the Motorola Q14 firmware to version 1.5.0.16 or later.
CVE-2022-4002 affects authenticated users of the Motorola Q14 firmware version 1.5.0.16 and earlier.
An attacker can execute operating system commands as root through a specially crafted API request due to CVE-2022-4002.
CVE-2022-4002 is potentially exploitable remotely if the attacker has authentication credentials.