CVE-2022-30624

Browsing the admin.html page allows the user to reset the admin password. Also appears in the JS code for the password.
References
Link Resource
https://www.gov.il/en/Departments/faq/cve_advisories Third Party Advisory
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:chcnav:p5e_gnss_firmware:4.1:*:*:*:*:*:*:*
cpe:2.3:o:chcnav:p5e_gnss_firmware:4.2:*:*:*:*:*:*:*
cpe:2.3:h:chcnav:p5e_gnss:-:*:*:*:*:*:*:*

History

23 Jul 2022, 02:08

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
References (MISC) https://www.gov.il/en/Departments/faq/cve_advisories - (MISC) https://www.gov.il/en/Departments/faq/cve_advisories - Third Party Advisory
CWE CWE-287
CPE cpe:2.3:o:chcnav:p5e_gnss_firmware:4.1:*:*:*:*:*:*:*
cpe:2.3:o:chcnav:p5e_gnss_firmware:4.2:*:*:*:*:*:*:*
cpe:2.3:h:chcnav:p5e_gnss:-:*:*:*:*:*:*:*

18 Jul 2022, 13:25

Type Values Removed Values Added
New CVE

Information

Published : 2022-07-18 13:15

Updated : 2024-02-04 22:51


NVD link : CVE-2022-30624

Mitre link : CVE-2022-30624

CVE.ORG link : CVE-2022-30624


JSON object : View

Products Affected

chcnav

  • p5e_gnss_firmware
  • p5e_gnss
CWE
CWE-287

Improper Authentication