A Command injection vulnerability exists in Tenda AC10U AC1200 Smart Dual-band Wireless Router AC10U V1.0 Firmware V15.03.06.49_multi via the setUsbUnload functionality. The vulnerability is caused because the client controlled "deviceName" value is passed directly to the "doSystemCmd" function.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2022-02-18T17:31:46
Updated: 2024-08-04T04:39:20.653Z
Reserved: 2021-12-20T00:00:00
Link: CVE-2021-45401
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-02-18T18:15:10.133
Modified: 2024-11-21T06:32:09.813
Link: CVE-2021-45401
Redhat
No data.