Vulnerability CVE-2022-43972


Published: 2023-01-09

Description:
A null pointer dereference vulnerability exists in Linksys WRT54GL Wireless-G Broadband Router with firmware <= 4.30.18.006. A null pointer dereference in the soap_action function within the upnp binary can be triggered by an unauthenticated attacker via a malicious POST request invoking the AddPortMapping action.

 References:
https://youtu.be/73-1lhvJPNg
https://youtu.be/TeWAmZaKQ_w
https://youtu.be/RfWVYCUBNZ0

Copyright 2026, cxsecurity.com

 

Back to Top