CVE-2022-34845 - CERT CVE
ID CVE-2022-34845
Sažetak A firmware update vulnerability exists in the sysupgrade functionality of Robustel R1510 3.1.16 and 3.3.0. A specially-crafted network packet can lead to arbitrary firmware update. An attacker can send a sequence of requests to trigger this vulnerability.
Reference
CVSS
Base: 2.7
Impact: 1.4
Exploitability:1.2
Pristup
VektorSloženostAutentikacija
NETWORK LOW -
Impact
PovjerljivostCjelovitostDostupnost
NONE LOW NONE
CVSS vektor CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:N
Zadnje važnije ažuriranje 26-10-2022 - 03:24
Objavljeno 25-10-2022 - 17:15