First published: Fri Nov 03 2023(Updated: )
ASUS RT-AX55’s authentication-related function has a vulnerability of insufficient filtering of special characters within its check token module. An authenticated remote attacker can exploit this vulnerability to perform a Command Injection attack to execute arbitrary commands, disrupt the system or terminate services.
Credit: twcert@cert.org.tw
Affected Software | Affected Version | How to fix |
---|---|---|
Asus Rt-ax55 Firmware | =3.0.0.4.386.51598 | |
ASUS RT-AX55 |
Update version to 3.0.0.4.386_51948 .
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-41347 is high with a severity value of 8.8.
CVE-2023-41347 affects ASUS RT-AX55 firmware version 3.0.0.4.386.51598.
The vulnerability in ASUS RT-AX55 firmware related to CVE-2023-41347 is command injection.
An authenticated remote attacker can exploit CVE-2023-41347 to perform a command injection attack and execute arbitrary commands.
A fix for CVE-2023-41347 has not been mentioned in the provided information, please refer to the reference link for more details.