CVE-2022-31898
medium · 6.8gl-inet GL-MT300N-V2 Mango v3.212 and GL-AX1800 Flint v3.214 were discovered to contain multiple command injection vulnerabilities via the ping_addr and trace_addr function parameters.
6.8
CVSS
15.8%
EPSS (exploit prob.)
97th
EPSS percentile
2022-10-27
Published
CVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Weaknesses
CWE-78
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| gl-inet | gl-mt300n-v2_firmware | 3.212 |
| gl-inet | gl-mt300n-v2 | all versions |
| gl-inet | gl-ax1800_firmware | 3.214 |
| gl-inet | gl-ax1800 | all versions |
Check a specific version with /api/v1/cve/match.
References
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2022-31898