First published: Wed Apr 17 2024(Updated: )
Tenda AC500 V2.0.1.9(1307) firmware contains a command injection vulnerablility in the formexeCommand function via the cmdinput parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tenda AC500 Firmware | ||
All of | ||
Tenda AC500 | =2.0.1.9\(1307\) | |
Tenda AC500 Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-32314 is classified as a high severity command injection vulnerability.
To mitigate CVE-2024-32314, upgrade the firmware of the Tenda AC500 to the latest version provided by the vendor.
CVE-2024-32314 allows an attacker to execute arbitrary commands on the device, potentially compromising its security.
If CVE-2024-32314 is exploited, you may notice unauthorized commands executed on your Tenda AC500 device.
CVE-2024-32314 specifically affects the Tenda AC500 model and may not be widely exploited outside of this scope.