Tenda AC9
cpe:2.3:h:tenda:ac9:*:*:*:*:*:*:*, +1 more
- V15.03.06.42_multi
A command injection vulnerability has been identified in the Tenda AC9 router, specifically in the V15.03.06.42_multi firmware. The issue arises in the formSetSambaConf function, where the usbname parameter can be manipulated to execute arbitrary commands. This vulnerability can be exploited by sending a crafted request that includes the malicious command payload.
Exploitation of this vulnerability allows for arbitrary command execution on the affected device.
To reproduce this vulnerability, send a request to the '/goform/SetSambaCfg' endpoint with the 'action' parameter set to 'del' and the 'usbName' parameter containing the injected command, such as a command to create a file in the '/tmp' directory.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.