CVE-2023-41345: ASUS RT-AX55 - command injection - 1
ASUS RT-AX55’s authentication-related function has a vulnerability of insufficient filtering of special characters within its token-generated module. An authenticated remote attacker can exploit this vulnerability to perform a Command Injection attack to execute arbitrary commands, disrupt the system, or terminate services.
Affected Software
Remediation
Information
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2023-41345.
What is the severity rating of CVE-2023-41345?
The severity rating of CVE-2023-41345 is 8.8 (high).
What is the affected software for CVE-2023-41345?
The affected software for CVE-2023-41345 is ASUS RT-AX55 firmware version 3.0.0.4.386.51598.
How does the vulnerability CVE-2023-41345 affect the system?
The vulnerability CVE-2023-41345 allows an authenticated remote attacker to perform a Command Injection attack and execute arbitrary commands, potentially disrupting the system.
Is the ASUS RT-AX55 device vulnerable to CVE-2023-41345?
No, the ASUS RT-AX55 device is not vulnerable to CVE-2023-41345.