ASUS RT-AX56U’s SQL handling function has an SQL injection vulnerability due to insufficient user input validation. An unauthenticated LAN attacker to inject arbitrary SQL code to read, modify and delete database.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: twcert

Published: 2022-04-07T18:22:27.892823Z

Updated: 2024-09-16T19:30:39.747Z

Reserved: 2022-01-26T00:00:00

Link: CVE-2022-23972

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2022-04-07T19:15:08.593

Modified: 2022-04-14T15:42:03.603

Link: CVE-2022-23972

cve-icon Redhat

No data.