Filtered by vendor Asus Subscriptions
Filtered by product Rt-ac86u Subscriptions
Total 22 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2023-28702 1 Asus 2 Rt-ac86u, Rt-ac86u Firmware 2024-08-02 8.8 High
ASUS RT-AC86U does not filter special characters for parameters in specific web URLs. A remote attacker with normal user privileges can exploit this vulnerability to perform command injection attack to execute arbitrary system commands, disrupt system or terminate service.
CVE-2023-28703 1 Asus 2 Rt-ac86u, Rt-ac86u Firmware 2024-08-02 7.2 High
ASUS RT-AC86U’s specific cgi function has a stack-based buffer overflow vulnerability due to insufficient validation for network packet header length. A remote attacker with administrator privileges can exploit this vulnerability to execute arbitrary system commands, disrupt system or terminate service.