VYPR
Unrated severityNVD Advisory· Published Sep 7, 2023· Updated Sep 26, 2024

ASUS RT-AX55、RT-AX56U_V2、RT-AC86U - Format String - 2

CVE-2023-39239

Description

It is identified a format string vulnerability in ASUS RT-AX56U V2’s General function API. This vulnerability is caused by lacking validation for a specific value within its apply.cgi module. A remote attacker with administrator privilege can exploit this vulnerability to perform remote arbitrary code execution, arbitrary system operation or disrupt service.

Affected products

4

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.