The affected product is vulnerable to an authenticated OS command injection, which may allow an attacker to inject and execute arbitrary shell commands as the Admin (root) user.
References
Link | Resource |
---|---|
https://www.cisa.gov/uscert/ics/advisories/icsa-22-032-01 | Mitigation Third Party Advisory US Government Resource |
Configurations
History
09 Feb 2022, 03:27
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-78 | |
CPE | cpe:2.3:h:riconmobile:s9922l:-:*:*:*:*:*:*:* cpe:2.3:h:riconmobile:s9922xl:-:*:*:*:*:*:*:* cpe:2.3:o:riconmobile:s9922l_firmware:16.10.3:*:*:*:*:*:*:* cpe:2.3:o:riconmobile:s9922xl_firmware:16.10.3:*:*:*:*:*:*:* |
|
References | (CONFIRM) https://www.cisa.gov/uscert/ics/advisories/icsa-22-032-01 - Mitigation, Third Party Advisory, US Government Resource | |
CVSS |
v2 : v3 : |
v2 : 10.0
v3 : 9.8 |
04 Feb 2022, 23:28
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2022-02-04 23:15
Updated : 2024-02-04 22:08
NVD link : CVE-2022-0365
Mitre link : CVE-2022-0365
CVE.ORG link : CVE-2022-0365
JSON object : View
Products Affected
riconmobile
- s9922xl_firmware
- s9922l_firmware
- s9922l
- s9922xl
CWE
CWE-78
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')