A memory corruption vulnerability exists in the httpd unescape functionality of Asuswrt prior to 3.0.0.4.386_48706 and Asuswrt-Merlin New Gen prior to 386.7.. A specially-crafted HTTP request can lead to memory corruption. An attacker can send a network request to trigger this vulnerability.
2022-08-05T22:15:11.143
2024-11-21T06:53:52.570
Modified
CVSSv3.1: 9.8 (CRITICAL)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | asus | asuswrt | < 3.0.0.4.386_48706 | Yes |
Operating System | asuswrt-merlin | new_gen | < 386.7 | Yes |
Operating System | asus | xt8_firmware | < 3.0.0.4.386_48706 | Yes |
Hardware | asus | xt8 | - | No |
Operating System | asus | tuf-ax3000_v2_firmware | < 3.0.0.4.386_48750 | Yes |
Hardware | asus | tuf-ax3000_v2 | - | No |
Operating System | asus | xd4_firmware | < 3.0.0.4.386_48790 | Yes |
Hardware | asus | xd4 | - | No |
Operating System | asus | et12_firmware | < 3.0.0.4.386_48823 | Yes |
Hardware | asus | et12 | - | No |
Operating System | asus | gt-ax6000_firmware | < 3.0.0.4.386_48823 | Yes |
Hardware | asus | gt-ax6000 | - | No |
Operating System | asus | xt12_firmware | < 3.0.0.4.386_48823 | Yes |
Hardware | asus | xt12 | - | No |
Operating System | asus | rt-ax58u_firmware | < 3.0.0.4.386_48908 | Yes |
Hardware | asus | rt-ax58u | - | No |
Operating System | asus | xt9_firmware | < 3.0.0.4.388_20027 | Yes |
Hardware | asus | xt9 | - | No |
Operating System | asus | xd6_firmware | < 3.0.0.4.386_49356 | Yes |
Hardware | asus | xd6 | - | No |
Operating System | asus | gt-ax11000_pro_firmware | < 3.0.0.4.386_48996 | Yes |
Hardware | asus | gt-ax11000_pro | - | No |
Operating System | asus | gt-axe16000_firmware | < 3.0.0.4.386_48786 | Yes |
Hardware | asus | gt-axe16000 | - | No |
Operating System | asus | rt-ax86u_firmware | < 3.0.0.4.386_49447 | Yes |
Hardware | asus | rt-ax86u | - | No |
Operating System | asus | rt-ax68u_firmware | < 3.0.0.4.386_49479 | Yes |
Hardware | asus | rt-ax68u | - | No |
Operating System | asus | rt-ax82u_firmware | < 3.0.0.4.386_49380 | Yes |
Hardware | asus | rt-ax82u | - | No |
Operating System | asus | rt-ax56u_firmware | < 3.0.0.4.386_49559 | Yes |
Hardware | asus | rt-ax56u | - | No |
Operating System | asus | rt-ax55_firmware | < 3.0.0.4.386_49559 | Yes |
Hardware | asus | rt-ax55 | - | No |
Operating System | asus | gt-ax11000_firmware | < 3.0.0.4.386_49559 | Yes |
Hardware | asus | gt-ax11000 | - | No |