First published: Fri Nov 03 2023(Updated: )
ASUS RT-AX55’s authentication-related function has a vulnerability of insufficient filtering of special characters within its code-authentication module. An authenticated remote attacker can exploit this vulnerability to perform a Command Injection attack to execute arbitrary commands, disrupt the system or terminate services.
Credit: twcert@cert.org.tw
Affected Software | Affected Version | How to fix |
---|---|---|
Asus Rt-ax55 Firmware | =3.0.0.4.386.51598 | |
ASUS RT-AX55 |
Update version to 3.0.0.4.386_51948 .
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for ASUS RT-AX55 is CVE-2023-41348.
The severity of CVE-2023-41348 is high with a CVSS score of 8.8.
The firmware version 3.0.0.4.386.51598 of ASUS RT-AX55 is affected by CVE-2023-41348.
CVE-2023-41348 allows an authenticated remote attacker to perform a Command Injection attack, execute arbitrary commands, and potentially disrupt the system.
Yes, ASUS RT-AX55 with firmware version 3.0.0.4.386.51598 is vulnerable to CVE-2023-41348.