EXPOSURES › CVE-2023-39780
CVE-2023-39780
HIGH ⌖ ON CISA KEV · EXPLOITED
DETAIL
⚡ RCE
⌖ EXPLOITED IN THE WILD
SHAME 72/100
rceexploited-in-wildunpatched
ASUS RT-AX55 routers OS command injection exploited remotely
ASUS RT-AX55 routers had an OS command injection vulnerability that allowed remote, authenticated attackers to execute arbitrary commands, leading to potential unauthorized access.
Shame score — Critical remote code execution flaw in ASUS RT-AX55 routers exposed to the internet without proper security measures in place.
▸ RECOMMENDED ACTION Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.
PLAYERS IMPLICATED
DESCRIPTION
ASUS RT-AX55 devices contain an OS command injection vulnerability that could allow a remote, authenticated attacker to execute arbitrary commands. As represented by CVE-2023-41346.
AFFECTED FEDRAMP PRODUCTS · 0
No correlated FedRAMP products.