CVE-2022-46598: OS Command Injection
Published Dec 30, 2022
·Updated
TRENDnet TEW755AP 1.13B01 was discovered to contain a command injection vulnerability via the wpsstaenrolleepin parameter in the action setstaenrolleepin5g function.
Affected Software
4 affected components
Trendnet Tew-755ap Firmware=1.13b01
Trendnet TEW-755AP
All of the following
Trendnet Tew-755ap Firmware=1.13b01
Trendnet TEW-755AP
Event History
Dec 30, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2022-46598?
CVE-2022-46598 is a command injection vulnerability in TRENDnet TEW755AP 1.13B01.
2
How severe is CVE-2022-46598?
CVE-2022-46598 has a severity rating of 9.8 out of 10, making it critical.
3
What software is affected by CVE-2022-46598?
Trendnet TEW-755AP Firmware version 1.13b01 is affected by CVE-2022-46598.
4
How can I fix CVE-2022-46598?
To fix CVE-2022-46598, update the TRENDnet TEW755AP firmware to a version that addresses the vulnerability.
5
What is the CWE classification for CVE-2022-46598?
CVE-2022-46598 is classified under CWE-77 (Improper Neutralization of Special Elements used in a Command) and CWE-78 (Improper Neutralization of Special Elements used in an OS Command).