CVE-2022-26674
Severity CVSS v4.0:
Pending analysis
Type:
CWE-134
Format String Vulnerability
Publication date:
22/04/2022
Last modified:
04/05/2022
Description
ASUS RT-AX88U has a Format String vulnerability, which allows an unauthenticated remote attacker to write to arbitrary memory address and perform remote arbitrary code execution, arbitrary system operation or disrupt service.
Impact
Base Score 3.x
9.80
Severity 3.x
CRITICAL
Base Score 2.0
7.50
Severity 2.0
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:asus:rt-ax88u_firmware:*:*:*:*:*:*:*:* | 3.0.0.4.386.46065 (excluding) | |
| cpe:2.3:h:asus:rt-ax88u:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



