Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-45449
HistoryJun 07, 2023 - 12:00 a.m.

ASUS RT-AC86U OS Command Injection Vulnerability

2023-06-0700:00:00
China National Vulnerability Database
www.cnvd.org.cn
15
asus
rt-ac86u
command injection
vulnerability
dual-band
wi-fi
router
chinese company
remote attacker
normal user privileges
system commands
interrupt services
terminate services
cnvd

EPSS

0.001

Percentile

44.0%

The ASUS RT-AC86U is a dual-band Wi-Fi router from the Chinese company ASUS. The ASUS RT-AC86U suffers from an operating system command injection vulnerability that originates from not filtering the special characters of parameters in specific URLs, which can be exploited by a remote attacker with normal user privileges to conduct a command injection attack, execute arbitrary system commands, interrupt the system, or terminate services.

EPSS

0.001

Percentile

44.0%

Related for CNVD-2023-45449