Lucene search

K
huaweiHuawei TechnologiesHUAWEI-SA-SCIVIAHPP-6BCDDEC5
HistoryApr 26, 2023 - 12:00 a.m.

Security Advisory - System Command Injection Vulnerability in a Huawei Printer Product

2023-04-2600:00:00
Huawei Technologies
www.huawei.com
13
security
advisory
remote code execution
huawei
printer
cve-2022-48472
software

9.8 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

0.004 Low

EPSS

Percentile

73.2%

A Huawei printer has a system command injection vulnerability. Successful exploitation could lead to remote code execution.(Vulnerability ID:HWPSIRT-2022-90270)

This vulnerability has been assigned a (CVE)ID:CVE-2022-48472

Affected configurations

Vulners
Node
huaweibisheng-wnmMatchota-bisheng-fw-2.0.0.211-beta
OR
huaweibisheng-wnmMatch3.0.0.325
OR
huaweibisheng-wnmMatch2.0.0.211

9.8 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

0.004 Low

EPSS

Percentile

73.2%

Related for HUAWEI-SA-SCIVIAHPP-6BCDDEC5