8.8
CVE-2022-46372
- EPSS 0.08%
- Veröffentlicht 12.01.2023 16:15:10
- Zuletzt bearbeitet 08.04.2025 14:15:28
- Quelle cna@cyber.gov.il
- CVE-Watchlists
- Unerledigt
Alotcer - AR7088H-A firmware version 16.10.3 Command execution Improper validation of unspecified input field may allow Authenticated command execution.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Alotceriot ≫ Ar7088h-a Firmware Version <= 16.10.3
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.08% | 0.244 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 8.8 | 2.8 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
| cna@cyber.gov.il | 7.2 | 1.2 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
|
CWE-20 Improper Input Validation
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.