CVE-2022-23972

Publication date

2022-04-07 18:22:27

Family

twcert

State

PUBLISHED

Description

ASUS RT-AX56U’s SQL handling function has an SQL injection vulnerability due to insufficient user input validation. An unauthenticated LAN attacker to inject arbitrary SQL code to read, modify and delete database.