Medium severity5.4NVD Advisory· Published Feb 13, 2023· Updated Jul 9, 2026
CVE-2022-45724
CVE-2022-45724
Description
Incorrect Access Control in Comfast router CF-WR6110N V2.3.1 allows a remote attacker on the same network to perform any HTTP request to an unauthenticated page to force the server to generate a SESSION_ID, and using this SESSION_ID an attacker can then perform authenticated requests.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:o:comfast:cf-wr610n_firmware:2.3.1:*:*:*:*:*:*:*
- Comfast/CF-WR6110Ndescription
- Range: V2.3.1
Patches
Vulnerability mechanics
References
1- sn0ox.com/research/2023/02/05/CVE-COMFAST-CF-WR610N.htmlnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.