VYPR
Unrated severityNVD Advisory· Published May 22, 2023· Updated Jan 28, 2025

CVE-2023-31742

CVE-2023-31742

Description

There is a command injection vulnerability in the Linksys WRT54GL router with firmware version 4.30.18.006. If an attacker gains web management privileges, they can inject commands into the post request parameters wl_ant, wl_rate, WL_atten_ctl, ttcp_num, ttcp_size in the httpd s Start_EPI() function, thereby gaining shell privileges.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • Linksys/WRT54GL routerdescription
  • Linksys/Wrt54glllm-fuzzy
    Range: =4.30.18.006

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.