It is identified a format string vulnerability in ASUS...
High severity
Unreviewed
Published
Sep 7, 2023
to the GitHub Advisory Database
•
Updated Mar 27, 2024
Description
Published by the National Vulnerability Database
Sep 7, 2023
Published to the GitHub Advisory Database
Sep 7, 2023
Last updated
Mar 27, 2024
It is identified a format string vulnerability in ASUS RT-AX56U V2’s General function API. This vulnerability is caused by lacking validation for a specific value within its apply.cgi module. An unauthenticated remote attacker can exploit this vulnerability without privilege to perform remote arbitrary code execution, arbitrary system operation or disrupt service.
References