Security Advisory

CVE-2022-24150

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-02-04 01:33:17
Last updated 2024-08-03 04:07:00
Assigner mitre
State PUBLISHED

Description

Tenda AX3 v16.03.12.10_CN was discovered to contain a command injection vulnerability in the function formSetSafeWanWebMan. This vulnerability allows attackers to execute arbitrary commands via the remoteIp parameter.