CVE-2022-29592

Severity CVSS v4.0:
Pending analysis
Type:
CWE-78 OS Command Injections
Publication date:
05/05/2022
Last modified:
13/05/2022

Description

Tenda TX9 Pro 22.03.02.10 devices allow OS command injection via set_route (called by doSystemCmd_route).

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:tenda:tx9_pro_firmware:22.03.02.10:*:*:*:*:*:*:*
cpe:2.3:h:tenda:tx9_pro:-:*:*:*:*:*:*:*