First published: Thu Dec 08 2022(Updated: )
An issue in the component tpi_systool_handle(0) (/goform/SysToolReboot) of Tenda W6-S v1.0.0.4(510) allows unauthenticated attackers to arbitrarily reboot the device.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tenda W6_S | =1.0.0.4\(510\) | |
Tenda W6-s Firmware | ||
All of | ||
Tenda W6_S | =1.0.0.4\(510\) | |
Tenda W6-s Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-45498 has a medium severity rating due to its ability to allow unauthenticated attackers to reboot the device.
To fix CVE-2022-45498, update the Tenda W6-S firmware to a version that is not affected by this vulnerability.
CVE-2022-45498 affects users of the Tenda W6-S firmware version 1.0.0.4(510).
CVE-2022-45498 facilitates unauthorized device reboots by unauthenticated attackers.
Yes, CVE-2022-45498 is a remote vulnerability that can be exploited by attackers without physical access to the device.