CVE-2022-36552

Tenda AC6(AC1200) v5.0 Firmware v02.03.01.114 and below contains an issue in the component /cgi-bin/DownloadFlash which allows attackers to steal all data such as source code and system files via a crafted GET request.
References
Link Resource
http://tenda.com Not Applicable
https://drive.google.com/drive/folders/1VxR4lhaWNWLuAPdJK2aRF6zfo_mRyiFO?usp=sharing Permissions Required Third Party Advisory
http://ac6ac1200.com Permissions Required Product
Configurations

Configuration 1


Information

Published : 2022-08-30 04:15

Updated : 2022-09-06 06:43


NVD link : CVE-2022-36552

Mitre link : CVE-2022-36552

Products Affected
No products.
CWE