Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-68531
HistoryMar 17, 2022 - 12:00 a.m.

Multiple ARRIS Product Command Injection Vulnerabilities (CNVD-2022-68531)

2022-03-1700:00:00
China National Vulnerability Database
www.cnvd.org.cn
11
arris
command injection
firewall logging
wi-fi router
vulnerability
arbitrary command execution
cnvd-2022-68531

EPSS

0.002

Percentile

52.4%

ARRIS SBR-AC1900P, SBR-AC3200P and SBR-AC1200P is a Wi-Fi router from ARRIS USA. Multiple ARRIS products command injection vulnerability, which stems from the firewall local logging feature failing to properly filter constructed command special characters, commands, etc. An attacker could exploit this vulnerability to cause arbitrary command execution.

EPSS

0.002

Percentile

52.4%