PT-2022-27713 · Tenda · Tenda W20E

Published

2022-12-12

·

Updated

2025-04-22

·

CVE-2022-45996

CVSS v3.1

7.2

High

VectorAV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Tenda W20E version 16.01.0.6(3392)
Description The issue is related to command injection via cmd get ping output.
Recommendations For Tenda W20E version 16.01.0.6(3392), consider restricting access to the cmd get ping output command until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

OS Command Injection

Weakness Enumeration

Related Identifiers

CVE-2022-45996

Affected Products

Tenda W20E