CVE-2022-45977: OS Command Injection
Published Dec 12, 2022
·Updated
Tenda AX12 V22.03.01.21CN was found to have a command injection vulnerability via /goform/setMacFilterCfg function.
Affected Software
4 affected components
Tenda Ax12 Firmware=22.03.01.21_cn
Tenda AX12
All of the following
Tenda Ax12 Firmware=22.03.01.21_cn
Tenda AX12
Event History
Dec 12, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-45977?
The severity of CVE-2022-45977 is high.
2
What is the description of CVE-2022-45977?
CVE-2022-45977 is a command injection vulnerability in Tenda AX12 V22.03.01.21_CN via the /goform/setMacFilterCfg function.
3
Is Tenda AX12 V22.03.01.21_CN affected by CVE-2022-45977?
Yes, Tenda AX12 V22.03.01.21_CN is affected by CVE-2022-45977.
4
How can I fix CVE-2022-45977?
Apply the latest firmware update provided by Tenda to fix CVE-2022-45977.
5
Where can I find more information about CVE-2022-45977?
You can find more information about CVE-2022-45977 at the following reference: [link](https://github.com/The-Itach1/IOT-CVE/tree/master/Tenda/AX12/3).