First published: Wed Apr 17 2024(Updated: )
Tenda W30E v1.0 V1.0.1.25(633) firmware contains a command injection vulnerablility in the formexeCommand function via the cmdinput parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tenda W30e Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2024-32292 is classified as high due to the potential for remote command execution.
To fix CVE-2024-32292, update the Tenda W30E firmware to the latest version provided by the vendor.
CVE-2024-32292 affects the Tenda W30E router running firmware version V1.0.1.25(633).
CVE-2024-32292 enables command injection attacks through the cmdinput parameter in the formexeCommand function.
As of now, there are no confirmed reports of active exploitation of CVE-2024-32292.