CVE-2022-25916

Severity CVSS v4.0:
Pending analysis
Type:
CWE-78 OS Command Injections
Publication date:
01/02/2023
Last modified:
27/03/2025

Description

Versions of the package mt7688-wiscan before 0.8.3 are vulnerable to Command Injection due to improper input sanitization in the &amp;#39;wiscan.scan&amp;#39; function. <br /> <br />

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:mt7688-wiscan_project:mt7688-wiscan:*:*:*:*:*:node.js:*:* 0.8.3 (excluding)