A
rris TG2482A firmware through 9.1.103GEM9 allow Remote Code Execution (RCE) via the ping utility feature.
References
| Link | Resource |
|---|---|
| http://arris.com | Product |
| https://packetstormsecurity.com/files/171001/Arris-Router-Firmware-9.1.103-Remote-Code-Execution.htmlhttps://github.com/yerodin/CVE-2022-45701 | Exploit Third Party Advisory VDB Entry |
| http://arris.com | Product |
| https://packetstormsecurity.com/files/171001/Arris-Router-Firmware-9.1.103-Remote-Code-Execution.htmlhttps://github.com/yerodin/CVE-2022-45701 | Exploit Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
| AND |
|
Configuration 2 (hide)
| AND |
|
Configuration 3 (hide)
| AND |
|
History
18 Mar 2025, 16:15
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | CWE-77 |
21 Nov 2024, 07:29
| Type | Values Removed | Values Added |
|---|---|---|
| References | () http://arris.com - Product | |
| References | () https://packetstormsecurity.com/files/171001/Arris-Router-Firmware-9.1.103-Remote-Code-Execution.htmlhttps://github.com/yerodin/CVE-2022-45701 - Exploit, Third Party Advisory, VDB Entry | |
| Summary |
|
Information
Published : 2023-02-17 15:15
Updated : 2025-03-18 16:15
NVD link : CVE-2022-45701
Mitre link : CVE-2022-45701
CVE.ORG link : CVE-2022-45701
JSON object : View
Products Affected
CWE
NVD-CWE-noinfo
CWE-77
Improper Neutralization of Special Elements used in a Command ('Command Injection')