CVE-2022-42087: CSRF
Published Oct 12, 2022
·Updated
Tenda AX1803 USAX1803v2.0brv1.0.0.12994CNZGYD014 is vulnerable to Cross Site Request Forgery (CSRF) via function fromSysToolReboot.
Affected Software
6 affected components
Tenda Ax1803 Firmware=1.0.0.1_2994_cn_zgyd01_4
Tenda ax1803
Tenda ax1803=v2
All of the following
Tenda Ax1803 Firmware=1.0.0.1_2994_cn_zgyd01_4
Any of the following
Tenda ax1803
Tenda ax1803=v2
Event History
Oct 12, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-42087?
The severity of CVE-2022-42087 is medium with a CVSS score of 6.5.
2
What software version is affected by CVE-2022-42087?
The Tenda AX1803 firmware version 1.0.0.1_2994_cn_zgyd01_4 is affected by CVE-2022-42087.
3
How does CVE-2022-42087 impact Tenda AX1803?
CVE-2022-42087 allows for Cross-Site Request Forgery (CSRF) attacks via a function fromSysToolReboot on Tenda AX1803.
4
Is Tenda AX1803 version v2 vulnerable to CVE-2022-42087?
No, Tenda AX1803 version v2 is not vulnerable to CVE-2022-42087.
5
Are there any known fixes or patches for CVE-2022-42087?
At the moment, there are no known fixes or patches available for CVE-2022-42087. It is recommended to follow security best practices and mitigate the risk through network segmentation and access controls.