CVE-2022-45768: OS Command Injection
Published Feb 7, 2023
·Updated
Command Injection vulnerability in Edimax Technology Co., Ltd. Wireless Router N300 Firmware BR428nS v3 allows attacker to execute arbitrary code via the formWlanMP function.
Affected Software
4 affected components
Edimax Br-6428ns Firmware=1.20
Edimax BR-6428NS=v3
All of the following
Edimax Br-6428ns Firmware=1.20
Edimax BR-6428NS=v3
Event History
Feb 7, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-45768?
CVE-2022-45768 is classified as a high severity vulnerability due to the potential for arbitrary code execution.
2
How do I fix CVE-2022-45768?
To fix CVE-2022-45768, update the Edimax BR-6428ns firmware to the latest version provided by the manufacturer.
3
What is affected by CVE-2022-45768?
CVE-2022-45768 affects Edimax Technology Co., Ltd. Wireless Router N300 Firmware BR428nS version 1.20.
4
How can an attacker exploit CVE-2022-45768?
An attacker can exploit CVE-2022-45768 by sending crafted input to the formWlanMP function, leading to command injection.
5
Is there a workaround for CVE-2022-45768?
Currently, the only recommended solution for CVE-2022-45768 is to upgrade the firmware to eliminate the vulnerability.