First published: Wed Oct 12 2022(Updated: )
Tenda AX1803 US_AX1803v2.0br_v1.0.0.1_2994_CN_ZGYD01_4 is vulnerable to Cross Site Request Forgery (CSRF) via function fromSysToolReboot.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tenda Ax1803 Firmware | =1.0.0.1_2994_cn_zgyd01_4 | |
Tenda AX1803 | ||
Tenda AX1803 | =v2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-42087 is medium with a CVSS score of 6.5.
The Tenda AX1803 firmware version 1.0.0.1_2994_cn_zgyd01_4 is affected by CVE-2022-42087.
CVE-2022-42087 allows for Cross-Site Request Forgery (CSRF) attacks via a function fromSysToolReboot on Tenda AX1803.
No, Tenda AX1803 version v2 is not vulnerable to CVE-2022-42087.
At the moment, there are no known fixes or patches available for CVE-2022-42087. It is recommended to follow security best practices and mitigate the risk through network segmentation and access controls.