First published: Mon Dec 12 2022(Updated: )
Tenda AX12 V22.03.01.21_CN was discovered to contain a Cross-Site Request Forgery (CSRF) via /goform/SysToolRestoreSet .
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tenda Ax12 Firmware | =22.03.01.21_cn | |
Tenda AX12 | ||
All of | ||
Tenda Ax12 Firmware | =22.03.01.21_cn | |
Tenda AX12 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-45980 is a vulnerability discovered in the Tenda AX12 V22.03.01.21_CN firmware, which allows for Cross-Site Request Forgery (CSRF) attacks through the /goform/SysToolRestoreSet endpoint.
CVE-2022-45980 has a severity rating of 8.8 (high).
CVE-2022-45980 affects Tenda AX12 devices running the V22.03.01.21_CN firmware, allowing attackers to perform Cross-Site Request Forgery (CSRF) attacks.
Yes, the Tenda AX12 firmware version 22.03.01.21_CN is vulnerable to CVE-2022-45980.
To protect your Tenda AX12 device from CVE-2022-45980, it is recommended to update to a patched firmware version as soon as it becomes available.