CVE-2022-35555
30Vexday Risk Score
Prioritize patching. It exploitation observed by VulnCheck.
ssvc Attendepss 25%
from disclosure to weapon
Published on NVDAug 11
VulnCheck+650d
exploitation probability
25%top 2% of all CVEs
observed exploitation
yesVulnCheck
A command injection vulnerability exists in /goform/exeCommand in Tenda W6 V1.0.0.9(4122), which allows attackers to construct cmdinput parameters for arbitrary command execution.
Affected products
n/a · n/a