CVE Vulnerabilities

CVE-2022-40740

Published: Jan 03, 2023 | Modified: Jul 10, 2023
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Realtek GPON router has insufficient filtering for special characters. A remote attacker authenticated as an administrator can exploit this vulnerability to perform command injection attacks, to execute arbitrary system command, manipulate system or disrupt service.

Affected Software

Name Vendor Start Version End Version
Usdk Realtek 1.0 (including) 1.0 (including)
Usdk Realtek 2.0 (including) 2.0 (including)
Usdk Realtek 2.2 (including) 2.2 (including)
Xpon_software_development_kit Realtek 1.9 (including) 1.9 (including)
Xpon_software_development_kit Realtek 3.3 (including) 3.3 (including)
Xpon_software_development_kit Realtek 4.0 (including) 4.0 (including)
Xpon_software_development_kit Realtek 4.1 (including) 4.1 (including)

References