Cross-Site Request Forgery Vulnerability in Tenda Router Firmware
CVE-2022-27374
6.5MEDIUM
What is CVE-2022-27374?
The Tenda AX12 router firmware is susceptible to a Cross-Site Request Forgery (CSRF) attack. This vulnerability can be exploited through specific functions, allowing unauthorized commands to be sent on behalf of an authenticated user without their consent. Attackers can leverage this flaw to manipulate router settings, leading to potential security breaches and unauthorized access. Users are advised to take precautions and update their firmware to protect against potential exploits.