Command Injection Vulnerability in Tenda AX3 Routers
CVE-2022-24150
9.8CRITICAL
What is CVE-2022-24150?
The Tenda AX3 router version v16.03.12.10_CN is susceptible to a command injection flaw in the formSetSafeWanWebMan function. By exploiting the remoteIp parameter, attackers can execute arbitrary commands, potentially compromising the security of the affected device and its network.