CVE-2022-45725: Input Validation
Improper Input Validation in Comfast router CF-WR6110N V2.3.1 allows a remote attacker on the same network to execute arbitrary code on the target via an HTTP POST request
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-45725?
CVE-2022-45725 is classified as a high-severity vulnerability due to improper input validation allowing remote code execution.
How do I fix CVE-2022-45725?
To mitigate CVE-2022-45725, update the Comfast router CF-WR6110N to the latest firmware version that addresses this vulnerability.
Who is affected by CVE-2022-45725?
Users of the Comfast CF-WR6110N router running firmware version 2.3.1 are specifically affected by CVE-2022-45725.
What kind of attack can exploit CVE-2022-45725?
CVE-2022-45725 can be exploited by an attacker on the same network sending crafted HTTP POST requests to execute arbitrary code.
Is CVE-2022-45725 an internal network vulnerability?
Yes, CVE-2022-45725 requires an attacker to be on the same network as the vulnerable Comfast router to exploit it.