ASUS RT-AX55’s authentication-related function has a vulnerability of insufficient filtering of special characters within its token-refresh module. An authenticated remote attacker can exploit this vulnerability to perform a Command Injection attack to execute arbitrary commands, disrupt the system or terminate services.
2023-11-03T05:15:29.733
2024-11-21T08:21:07.177
Modified
CVSSv3.1: 8.8 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | asus | rt-ax55_firmware | 3.0.0.4.386.51598 | Yes |
Hardware | asus | rt-ax55 | - | No |