CVE-2023-39236: ASUS RT-AC86U - Command injection vulnerability - 4
ASUS RT-AC86U Traffic Analyzer - Statistic function has insufficient filtering of special character. A remote attacker with regular user privilege can exploit this vulnerability to perform command injection attack to execute arbitrary commands, disrupt system or terminate services.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the vulnerability ID for this ASUS RT-AC86U vulnerability?
The vulnerability ID for this ASUS RT-AC86U vulnerability is CVE-2023-39236.
What is the title of this vulnerability?
The title of this vulnerability is 'ASUS RT-AC86U Traffic Analyzer - Statistic function has insufficient filtering of special character.'
What is the severity of CVE-2023-39236?
The severity of CVE-2023-39236 is high with a severity score of 8.8.
How can a remote attacker exploit this vulnerability?
A remote attacker with regular user privilege can exploit this vulnerability to perform command injection attacks, execute arbitrary commands, disrupt system, or terminate services.
Is there a fix for this vulnerability?
Currently, there is no information available about a fix for this vulnerability. It is recommended to follow the provided reference for any updates.