There is a command injection vulnerability at the /goform/setsambacfg interface of Tenda AC15 US_AC15V1.0BR_V15.03.05.20_multi_TDE01.bin device web, which can also cooperate with CVE-2021-44971 to cause unconditional arbitrary command execution
Advisories
Source ID Title
EUVD EUVD EUVD-2022-32999 There is a command injection vulnerability at the /goform/setsambacfg interface of Tenda AC15 US_AC15V1.0BR_V15.03.05.20_multi_TDE01.bin device web, which can also cooperate with CVE-2021-44971 to cause unconditional arbitrary command execution
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-03T05:56:15.648Z

Reserved: 2022-04-04T00:00:00

Link: CVE-2022-28557

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-05-04T16:15:08.697

Modified: 2024-11-21T06:57:30.793

Link: CVE-2022-28557

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses