MSNSwitch Firmware MNT.2408 is susceptible to authentication bypass in the component http://MYDEVICEIP/cgi-bin-sdb/ExportSettings.sh. An attacker can arbitrarily configure settings, leading to possible remote code execution and subsequent unauthorized operations.
View the template here CVE-2022-32429.yaml
References:
https://nvd.nist.gov/vuln/detail/CVE-2022-32429