CVE-2023-37144: Command Injection
Published Jul 7, 2023
·Updated
Tenda AC10 v15.03.06.26 was discovered to contain a command injection vulnerability via the mac parameter in the function formWriteFacMac.
Affected Software
4 affected components
Tendacn Ac10 Firmware=15.03.06.26
Tenda AC10
All of the following
Tendacn Ac10 Firmware=15.03.06.26
Tenda AC10
Event History
Jul 7, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-37144?
The severity of CVE-2023-37144 is critical (9.8).
2
How does CVE-2023-37144 affect Tenda AC10 devices?
Tenda AC10 devices with firmware version 15.03.06.26 are affected by CVE-2023-37144.
3
What is the CVE ID of the vulnerability affecting Tenda AC10?
The CVE ID of the vulnerability affecting Tenda AC10 is CVE-2023-37144.
4
How can I fix the command injection vulnerability (CVE-2023-37144) in Tenda AC10?
To fix the command injection vulnerability (CVE-2023-37144) in Tenda AC10, update the firmware to a version that addresses the vulnerability.
5
Where can I find more information about CVE-2023-37144?
You can find more information about CVE-2023-37144 at the following link: [https://github.com/DaDong-G/Vulnerability_info/blob/main/ac10_command_injection/Readme.md](https://github.com/DaDong-G/Vulnerability_info/blob/main/ac10_command_injection/Readme.md)