CVE-2024-32281: Command Injection
Published Apr 17, 2024
·Updated
Tenda AC7V1.0 v15.03.06.44 firmware contains a command injection vulnerablility in formexeCommand function via the cmdinput parameter.
Affected Software
3 affected components
Tenda AC7V1.0
All of the following
Tenda AC7 firmware=15.03.06.44
Tenda AC7=1.0
Event History
Apr 17, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·01:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-32281?
CVE-2024-32281 has been rated as a high severity vulnerability due to its potential for command injection exploitation.
2
How do I fix CVE-2024-32281?
To fix CVE-2024-32281, update the Tenda AC7V1.0 firmware to the latest version that addresses this vulnerability.
3
What systems are affected by CVE-2024-32281?
CVE-2024-32281 affects the Tenda AC7V1.0 router running firmware version v15.03.06.44.
4
What type of vulnerability is CVE-2024-32281?
CVE-2024-32281 is classified as a command injection vulnerability.
5
Can CVE-2024-32281 be exploited remotely?
Yes, CVE-2024-32281 can be exploited remotely, allowing attackers to execute commands on the affected device.