CVE-2022-42139: OS Command Injection
Published Dec 13, 2022
·Updated
Delta Electronics DVW-W02W2-E2 1.5.0.10 is vulnerable to Command Injection via Crafted URL.
Affected Software
4 affected components
Deltaww Dvw-w02w2-e2 Firmware=2.42
Deltaww Dvw-w02w2-e2
All of the following
Deltaww Dvw-w02w2-e2 Firmware=2.42
Deltaww Dvw-w02w2-e2
Event History
Dec 13, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Dec 14, 2022
Data Sourced
via NVD·12:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2022-42139?
CVE-2022-42139 is a vulnerability in Delta Electronics DVW-W02W2-E2 1.5.0.10 that allows command injection via a crafted URL.
2
How severe is CVE-2022-42139?
CVE-2022-42139 has a severity rating of 8.8 (high).
3
What software versions are affected by CVE-2022-42139?
Delta Electronics DVW-W02W2-E2 firmware version 2.42 is affected by CVE-2022-42139.
4
How can I fix CVE-2022-42139?
To fix CVE-2022-42139, update Delta Electronics DVW-W02W2-E2 firmware to a version that is not vulnerable.
5
Where can I find more information about CVE-2022-42139?
More information about CVE-2022-42139 can be found at https://cyberdanube.com/en/en-authenticated-command-injection-in-delta-electronics-dvw-w02w2-e2/