First published: Fri Dec 30 2022(Updated: )
TRENDnet TEW755AP 1.13B01 was discovered to contain a command injection vulnerability via the wps_sta_enrollee_pin parameter in the action set_sta_enrollee_pin_5g function.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Trendnet Tew-755ap Firmware | =1.13b01 | |
TRENDnet TEW-755AP |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-46598 is a command injection vulnerability in TRENDnet TEW755AP 1.13B01.
CVE-2022-46598 has a severity rating of 9.8 out of 10, making it critical.
Trendnet TEW-755AP Firmware version 1.13b01 is affected by CVE-2022-46598.
To fix CVE-2022-46598, update the TRENDnet TEW755AP firmware to a version that addresses the vulnerability.
CVE-2022-46598 is classified under CWE-77 (Improper Neutralization of Special Elements used in a Command) and CWE-78 (Improper Neutralization of Special Elements used in an OS Command).