CVE-2022-45674: CSRF
Published Dec 2, 2022
·Updated
Tenda AC6V1.0 V15.03.05.19 is vulnerable to Cross Site Request Forgery (CSRF) via function fromSysToolReboot.
Affected Software
4 affected components
Tenda Ac6 Firmware=15.03.05.19
Tenda AC6=1.0
All of the following
Tenda Ac6 Firmware=15.03.05.19
Tenda AC6=1.0
Event History
Dec 2, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID of Tenda AC6V1.0 V15.03.05.19?
The vulnerability ID of Tenda AC6V1.0 V15.03.05.19 is CVE-2022-45674.
2
What is the severity of CVE-2022-45674?
The severity of CVE-2022-45674 is medium with a CVSS score of 6.5.
3
What is Cross Site Request Forgery (CSRF)?
Cross Site Request Forgery (CSRF) is a type of attack that tricks the victim into making a specific request without their consent or knowledge.
4
How does the vulnerability CVE-2022-45674 affect Tenda AC6V1.0 V15.03.05.19?
The vulnerability CVE-2022-45674 allows an attacker to perform Cross Site Request Forgery (CSRF) attacks on Tenda AC6V1.0 V15.03.05.19 via the function fromSysToolReboot.
5
How can I fix the vulnerability CVE-2022-45674 in Tenda AC6V1.0 V15.03.05.19?
To fix the vulnerability CVE-2022-45674 in Tenda AC6V1.0 V15.03.05.19, it is recommended to apply the latest firmware update provided by the vendor.