First published: Tue Nov 15 2022(Updated: )
Tenda AC1200 Router Model W15Ev2 V15.11.0.10(1576) was discovered to contain a command injection vulnerability via the dmzHost parameter in the setDMZ function.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tenda W15e Firmware | =15.11.0.10\(1576\) | |
Tenda W15e Firmware | =2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-41395 is considered a high severity vulnerability due to the potential for command injection.
To fix CVE-2022-41395, update the Tenda AC1200 Router to the latest firmware version that addresses this vulnerability.
CVE-2022-41395 affects Tenda AC1200 Router Model W15Ev2 running version 15.11.0.10(1576).
CVE-2022-41395 is classified as a command injection vulnerability.
Yes, CVE-2022-41395 can be exploited remotely by an attacker who sends a specially crafted request to the vulnerable function.