ASUS RT-AX56U’s SQL handling function has an SQL injection vulnerability due to insufficient user input validation. An unauthenticated LAN attacker to inject arbitrary SQL code to read, modify and delete database.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.twcert.org.tw/tw/cp-132-5786-d2e86-1.html |
History
No history.
MITRE
Status: PUBLISHED
Assigner: twcert
Published: 2022-04-07T18:22:27.892823Z
Updated: 2024-09-16T19:30:39.747Z
Reserved: 2022-01-26T00:00:00
Link: CVE-2022-23972
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-04-07T19:15:08.593
Modified: 2024-11-21T06:49:32.910
Link: CVE-2022-23972
Redhat
No data.