CVE-2022-30023

Tenda ONT GPON AC1200 Dual band WiFi HG9 v1.0.1 is vulnerable to Command Injection via the Ping function.
References
Link Resource
https://github.com/Haniwa0x01/CVE-2022-30023 Exploit Third Party Advisory
https://github.com/Haniwa0x01/CVE-2022-30023 Exploit Third Party Advisory
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:tenda:hg9_firmware:1.0.1:*:*:*:*:*:*:*
cpe:2.3:h:tenda:hg9:-:*:*:*:*:*:*:*

History

09 Jul 2026, 01:17

Type Values Removed Values Added
References
  • {'url': 'http://ont.com', 'tags': ['Not Applicable'], 'source': 'af854a3a-2127-422b-91ae-364da2661108'}
  • {'url': 'http://tenda.com', 'tags': ['Not Applicable'], 'source': 'af854a3a-2127-422b-91ae-364da2661108'}

21 Nov 2024, 07:02

Type Values Removed Values Added
References () http://ont.com - Not Applicable () http://ont.com - Not Applicable
References () http://tenda.com - Not Applicable () http://tenda.com - Not Applicable
References () https://github.com/Haniwa0x01/CVE-2022-30023 - Exploit, Third Party Advisory () https://github.com/Haniwa0x01/CVE-2022-30023 - Exploit, Third Party Advisory

08 Aug 2023, 14:21

Type Values Removed Values Added
CWE CWE-77 CWE-78

Information

Published : 2022-06-16 15:15

Updated : 2026-07-09 01:17


NVD link : CVE-2022-30023

Mitre link : CVE-2022-30023

CVE.ORG link : CVE-2022-30023


JSON object : View

Products Affected

tenda

  • hg9_firmware
  • hg9
CWE
CWE-78

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')