CVE-2023-41347

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Nov 3, 2023
Updated: Nov 13, 2023
CWE ID 78

Summary

CVE-2023-41347 is a vulnerability affecting the ASUS RT-AX55 router. This issue stems from the router's authentication function, which lacks adequate filtering of special characters in its check token module. An authenticated attacker can take advantage of this weakness to perform Command Injection attacks, enabling them to execute arbitrary commands, cause disruptions, or terminate services. This vulnerability poses a significant risk, making it essential for ASUS to release a patch promptly. Until then, users are advised to implement additional security measures to protect their networks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share