CVE-2022-32175 describes a Cross-Site Request Forgery (CSRF) vulnerability affecting AdGuardHome versions v0.95 through v0.108.0-b.13, specifically within its custom filtering rules functionality. With a CVSS score of 5.4 (Medium), this vulnerability allows an unauthenticated attacker to trick an authenticated user into clicking a malicious link, potentially leading to the deletion or modification of their custom filtering rules. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 0.95, < 0.108CPE matchmatch criteria | cpe:2.3:a:adguard:adguardhome:*:*:*:*:*:*:*:* | ||
0.108CPE matchmatch criteria | cpe:2.3:a:adguard:adguardhome:0.108:-:*:*:*:*:*:* | ||
0.108CPE matchmatch criteria | cpe:2.3:a:adguard:adguardhome:0.108:beta1:*:*:*:*:*:* | ||
0.108CPE matchmatch criteria | cpe:2.3:a:adguard:adguardhome:0.108:beta10:*:*:*:*:*:* | ||
0.108CPE matchmatch criteria | cpe:2.3:a:adguard:adguardhome:0.108:beta11:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.