CVE-2022-36552
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
30/08/2022
Last modified:
14/02/2024
Description
Tenda AC6(AC1200) v5.0 Firmware v02.03.01.114 and below contains an issue in the component /cgi-bin/DownloadFlash which allows attackers to steal all data such as source code and system files via a crafted GET request.
Impact
Base Score 3.x
7.50
Severity 3.x
HIGH
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:o:tendacn:ac6_firmware:*:*:*:*:*:*:*:* | 02.03.01.114 (including) | |
cpe:2.3:h:tendacn:ac6:5.0:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page