CVE-2022-28665
05.08.2022, 22:15
A memory corruption vulnerability exists in the httpd unescape functionality of FreshTomato 2022.1. A specially-crafted HTTP request can lead to memory corruption. An attacker can send a network request to trigger this vulnerability.The `freshtomato-arm` has a vulnerable URL-decoding feature that can lead to memory corruption.Enginsight
Vendor | Product | Version |
---|---|---|
freshtomato | freshtomato | 2022.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration