Vulnerability CVE-2023-39237


Published: 2023-09-07

Description:

ASUS RT-AC86U Traffic Analyzer - Apps analysis function has insufficient filtering of special character. A remote attacker with regular user privilege can exploit this vulnerability to perform command injection attack to execute arbitrary commands, disrupt system or terminate services.

Type:

CWE-78

(Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') )

 References:
https://www.twcert.org.tw/tw/cp-132-7352-bad68-1.html

Copyright 2026, cxsecurity.com

 

Back to Top