René Helmke 7791f18b51 bootstrap
2023-05-16 16:09:41 +02:00

173 lines
4.6 KiB
JSON

{
"id": "CVE-2022-37780",
"sourceIdentifier": "cve@mitre.org",
"published": "2022-09-07T17:15:08.717",
"lastModified": "2022-09-12T18:41:30.060",
"vulnStatus": "Analyzed",
"descriptions": [
{
"lang": "en",
"value": "Phicomm FIR151B A2, FIR302E A2, FIR300B A2, FIR303B A2 routers V3.0.1.17 were discovered to contain a remote command execution (RCE) vulnerability via the pingAddr parameter of the tracert function."
},
{
"lang": "es",
"value": "Se ha detectado que los routers Phicomm FIR151B A2, FIR302E A2, FIR300B A2 versi\u00f3n V3.0.1.17 contienen una vulnerabilidad de ejecuci\u00f3n de comandos remota (RCE) por medio del par\u00e1metro pingAddr de la funci\u00f3n tracert"
}
],
"metrics": {
"cvssMetricV31": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "3.1",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H",
"attackVector": "NETWORK",
"attackComplexity": "LOW",
"privilegesRequired": "HIGH",
"userInteraction": "NONE",
"scope": "UNCHANGED",
"confidentialityImpact": "HIGH",
"integrityImpact": "HIGH",
"availabilityImpact": "HIGH",
"baseScore": 7.2,
"baseSeverity": "HIGH"
},
"exploitabilityScore": 1.2,
"impactScore": 5.9
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "NVD-CWE-noinfo"
}
]
}
],
"configurations": [
{
"operator": "AND",
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:o:phicomm:fir151b_firmware:3.0.1.17:*:*:*:*:*:*:*",
"matchCriteriaId": "9930251F-3129-4693-8EBE-C8B7ED6851F2"
}
]
},
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": false,
"criteria": "cpe:2.3:h:phicomm:fir151b:a2:*:*:*:*:*:*:*",
"matchCriteriaId": "C19A2F00-33C6-43B1-85CA-96371C89016F"
}
]
}
]
},
{
"operator": "AND",
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:o:phicomm:fir302e_firmware:3.0.1.17:*:*:*:*:*:*:*",
"matchCriteriaId": "A5E667E6-1AD9-422D-A42F-12207516B787"
}
]
},
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": false,
"criteria": "cpe:2.3:h:phicomm:fir302e:a2:*:*:*:*:*:*:*",
"matchCriteriaId": "426912D9-0FE3-4698-99CE-F38197D50C10"
}
]
}
]
},
{
"operator": "AND",
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:o:phicomm:fir300b_firmware:3.0.1.17:*:*:*:*:*:*:*",
"matchCriteriaId": "8D7FF0A8-0BD1-44C3-8CC2-6C3FA1512712"
}
]
},
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": false,
"criteria": "cpe:2.3:h:phicomm:fir300b:a2:*:*:*:*:*:*:*",
"matchCriteriaId": "00FE9576-A53C-4CDB-A13B-754AEA9705E3"
}
]
}
]
},
{
"operator": "AND",
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:o:phicomm:fir303b_firmware:3.0.1.17:*:*:*:*:*:*:*",
"matchCriteriaId": "D7042ED4-66F0-45EB-85E4-F285E50EC8EA"
}
]
},
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": false,
"criteria": "cpe:2.3:h:phicomm:fir303b:a2:*:*:*:*:*:*:*",
"matchCriteriaId": "C01C9916-B30E-4DCA-B4C1-311C983AA8DD"
}
]
}
]
}
],
"references": [
{
"url": "https://github.com/SLoSnow9879/Phicomm_Router/blob/main/Tracert_1.md",
"source": "cve@mitre.org",
"tags": [
"Exploit",
"Third Party Advisory"
]
}
]
}