CVE-2022-45996: OS Command Injection
Published Dec 12, 2022
·Updated
Tenda W20E V16.01.0.6(3392) is vulnerable to Command injection via cmdgetpingoutput.
Affected Software
4 affected components
Tenda W20e Firmware=16.01.0.6\(3392\)
Tenda W15E
All of the following
Tenda W20e Firmware=16.01.0.6\(3392\)
Tenda W15E
Event History
Dec 12, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-45996?
CVE-2022-45996 is considered to have a high severity due to the potential for command injection attacks.
2
How do I fix CVE-2022-45996?
To fix CVE-2022-45996, update the Tenda W20E firmware to the latest version that addresses the vulnerability.
3
What type of vulnerability is CVE-2022-45996?
CVE-2022-45996 is classified as a command injection vulnerability affecting the Tenda W20E device.
4
Which devices are impacted by CVE-2022-45996?
CVE-2022-45996 specifically affects the Tenda W20E firmware version 16.01.0.6(3392).
5
Can CVE-2022-45996 be exploited remotely?
Yes, CVE-2022-45996 can be exploited remotely, allowing attackers to execute commands on the affected device.