Vulnerability Description
SmartRG SR506n 2.5.15 and SR510n 2.6.13 routers are vulnerable to Remote Code Execution (RCE) via the ping host feature.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Adtran | Sr510N Firmware | 2.6.13 |
| Adtran | Sr510N | - |
| Adtran | Sr506N Firmware | 2.5.15 |
| Adtran | Sr506N | - |
References
- http://packetstormsecurity.com/files/168336/SmartRG-Router-2.6.13-Remote-Code-ExExploitThird Party AdvisoryVDB Entry
- http://packetstormsecurity.com/files/169816/SmartRG-Router-SR510n-2.6.13-Remote-ExploitThird Party AdvisoryVDB Entry
- https://cxsecurity.com/issue/WLB-2022090029ExploitThird Party Advisory
- https://packetstormsecurity.com/files/cve/CVE-2022-37661Third Party AdvisoryVDB Entry
- http://packetstormsecurity.com/files/168336/SmartRG-Router-2.6.13-Remote-Code-ExExploitThird Party AdvisoryVDB Entry
- http://packetstormsecurity.com/files/169816/SmartRG-Router-SR510n-2.6.13-Remote-ExploitThird Party AdvisoryVDB Entry
- https://cxsecurity.com/issue/WLB-2022090029ExploitThird Party Advisory
- https://packetstormsecurity.com/files/cve/CVE-2022-37661Third Party AdvisoryVDB Entry
FAQ
What is CVE-2022-37661?
CVE-2022-37661 is a vulnerability with a CVSS score of 9.8 (CRITICAL). SmartRG SR506n 2.5.15 and SR510n 2.6.13 routers are vulnerable to Remote Code Execution (RCE) via the ping host feature.
How severe is CVE-2022-37661?
CVE-2022-37661 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2022-37661?
Check the references section above for vendor advisories and patch information. Affected products include: Adtran Sr510N Firmware, Adtran Sr510N, Adtran Sr506N Firmware, Adtran Sr506N.