packetstormsecurity.com
http://packetstormsecurity.com/files/168336/SmartRG-Router-2.6.13-Remote-Code-Execution.html CVE-2022-37661
CRITICAL
SmartRG SR506n and SR510n Ping Host Remote Code Execution
Record summary
CVE-2022-37661 has a selected CVSS score of 9.8 (critical); EIP currently links 1 catalogued exploit.
Description
SmartRG SR506n 2.5.15 and SR510n 2.6.13 routers are vulnerable to Remote Code Execution (RCE) via the ping host feature.
Description source: CVE List
Exploitation context
Known exploitation
- VulnCheck KEV
- Listed · Nov 24, 2022 · VulnCheck
- Reported exploitation
- Observed · VulnCheck
Available material
- Catalogued exploits
- 1
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
sr510n_firmwareBrowse adtran / sr510n_firmware | VulnCheck | Version data not supplied | |
Proofs of concept
1Catalogued exploits
ExploitDBSmartRG Router SR510n 2.6.13 - Remote Code ExecutionExploitDB exploitby Yerodin RichardsNot analyzed1 file
References
5packetstormsecurity.com
http://packetstormsecurity.com/files/169816/SmartRG-Router-SR510n-2.6.13-Remote-Code-Execution.html cxsecurity.com
https://cxsecurity.com/issue/WLB-2022090029 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2022-37661 packetstormsecurity.com
https://packetstormsecurity.com/files/cve/CVE-2022-37661