Zurück zur CVE-Übersicht
CVE-2022-30075
HIGH(8.8)CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Risk Signal Score33/100 — MITTEL
- CVSS 8.8 — Hoch
- EPSS 37%
EPSS-Score
37%
Exploit-Wahrscheinlichkeit (30 Tage)
CVSS Score
8.8
Technische Schwere
Beschreibung
In TP-Link Router AX50 firmware 210730 and older, import of a malicious backup file via web interface can lead to remote code execution due to improper validation.
Referenzen
- http://packetstormsecurity.com/files/167522/TP-Link-AX50-Remote-Code-Execution.h...
- https://github.com/aaronsvk
- https://github.com/aaronsvk/CVE-2022-30075
- https://www.exploit-db.com/exploits/50962
- http://packetstormsecurity.com/files/167522/TP-Link-AX50-Remote-Code-Execution.h...
- http://tp-link.com
- https://github.com/aaronsvk
- https://github.com/aaronsvk/CVE-2022-30075
- https://www.exploit-db.com/exploits/50962