← back
CVE-2022-40740

Realtek GPON router - Command Injection

CVSS 7.2 HIGHEPSS 1.5%CWE-78
Realtek GPON router has insufficient filtering for special characters. A remote attacker authenticated as an administrator can exploit this vulnerability to perform command injection attacks, to execute arbitrary system command, manipulate system or disrupt service.
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Affected products
Realtek · GPON router

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →