CVE-2022-36158
26.09.2022, 11:15
Contec FXA3200 version 1.13.00 and under suffers from Insecure Permissions in the Wireless LAN Manager interface which allows malicious actors to execute Linux commands with root privilege via a hidden web page (/usr/www/ja/mnt_cmd.cgi).
Vendor | Product | Version |
---|---|---|
contec | fxa3000_firmware | 𝑥 ≤ 1.13.00 |
contec | fxa3020_firmware | 𝑥 ≤ 1.13.00 |
contec | fxa3200_firmware | 𝑥 ≤ 1.13.00 |
contec | fxa2000_firmware | 𝑥 < 1.39.00 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References