First published: Fri Apr 05 2024(Updated: )
A command injection vulnerability exists in /goform/exeCommand in Tenda AC18 v15.03.05.05, which allows attackers to construct cmdinput parameters for arbitrary command execution.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tenda AC18 firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-30891 is classified as a high severity vulnerability due to its potential for arbitrary command execution.
To mitigate CVE-2024-30891, update the Tenda AC18 firmware to the latest version provided by Tenda.
CVE-2024-30891 is a command injection vulnerability that allows attackers to execute arbitrary commands.
CVE-2024-30891 affects the Tenda AC18 router running firmware version v15.03.05.05.
An attacker exploiting CVE-2024-30891 could potentially execute arbitrary commands on the affected Tenda AC18 device.