ASUS RT-AX56U’s login function contains a path traversal vulnerability due to its inadequate filtering for special characters in URL parameters, which allows an unauthenticated local area network attacker to access restricted system paths and download arbitrary files.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.twcert.org.tw/tw/cp-132-5508-59251-1.html |
History
No history.
MITRE
Status: PUBLISHED
Assigner: twcert
Published: 2022-01-14T04:50:39.957830Z
Updated: 2024-09-17T01:01:37.824Z
Reserved: 2021-12-21T00:00:00
Link: CVE-2022-22054
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-01-14T05:15:11.167
Modified: 2024-11-21T06:45:59.810
Link: CVE-2022-22054
Redhat
No data.