Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-26376


A memory corruption vulnerability exists in the httpd unescape functionality of Asuswrt prior to 3.0.0.4.386_48706 and Asuswrt-Merlin New Gen prior to 386.7.. A specially-crafted HTTP request can lead to memory corruption. An attacker can send a network request to trigger this vulnerability.


Published

2022-08-05T22:15:11.143

Last Modified

2024-11-21T06:53:52.570

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 9.8 (CRITICAL)

Weaknesses
  • Type: Primary
    CWE-787
  • Type: Secondary
    CWE-787

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System asus asuswrt < 3.0.0.4.386_48706 Yes
Operating System asuswrt-merlin new_gen < 386.7 Yes
Operating System asus xt8_firmware < 3.0.0.4.386_48706 Yes
Hardware asus xt8 - No
Operating System asus tuf-ax3000_v2_firmware < 3.0.0.4.386_48750 Yes
Hardware asus tuf-ax3000_v2 - No
Operating System asus xd4_firmware < 3.0.0.4.386_48790 Yes
Hardware asus xd4 - No
Operating System asus et12_firmware < 3.0.0.4.386_48823 Yes
Hardware asus et12 - No
Operating System asus gt-ax6000_firmware < 3.0.0.4.386_48823 Yes
Hardware asus gt-ax6000 - No
Operating System asus xt12_firmware < 3.0.0.4.386_48823 Yes
Hardware asus xt12 - No
Operating System asus rt-ax58u_firmware < 3.0.0.4.386_48908 Yes
Hardware asus rt-ax58u - No
Operating System asus xt9_firmware < 3.0.0.4.388_20027 Yes
Hardware asus xt9 - No
Operating System asus xd6_firmware < 3.0.0.4.386_49356 Yes
Hardware asus xd6 - No
Operating System asus gt-ax11000_pro_firmware < 3.0.0.4.386_48996 Yes
Hardware asus gt-ax11000_pro - No
Operating System asus gt-axe16000_firmware < 3.0.0.4.386_48786 Yes
Hardware asus gt-axe16000 - No
Operating System asus rt-ax86u_firmware < 3.0.0.4.386_49447 Yes
Hardware asus rt-ax86u - No
Operating System asus rt-ax68u_firmware < 3.0.0.4.386_49479 Yes
Hardware asus rt-ax68u - No
Operating System asus rt-ax82u_firmware < 3.0.0.4.386_49380 Yes
Hardware asus rt-ax82u - No
Operating System asus rt-ax56u_firmware < 3.0.0.4.386_49559 Yes
Hardware asus rt-ax56u - No
Operating System asus rt-ax55_firmware < 3.0.0.4.386_49559 Yes
Hardware asus rt-ax55 - No
Operating System asus gt-ax11000_firmware < 3.0.0.4.386_49559 Yes
Hardware asus gt-ax11000 - No

References