CVE-2023-28702
ASUS RT-AC86U does not filter special characters for parameters in specific web URLs. A remote attacker with normal user
ASUS RT-AC86U does not filter special characters for parameters in specific web URLs. A remote attacker with normal user privileges can exploit this vulnerability to perform command injection attack to execute arbitrary system commands, disrupt system or terminate service.
HIGH · CVSS 8.8
EPSS 0.00469
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0