Lucene search

K
huaweiHuawei TechnologiesHUAWEI-SA-SCIVIAHPP-F18E962A
HistoryJan 18, 2023 - 12:00 a.m.

Security Advisory - System Command Injection Vulnerability in a Huawei Printer Product

2023-01-1800:00:00
Huawei Technologies
www.huawei.com
9
huawei
printer
command injection
vulnerability
remote code execution
cve-2022-48255

9.8 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

0.003 Low

EPSS

Percentile

70.9%

A Huawei printer has a system command injection vulnerability. Successful exploitation could lead to remote code execution.(Vulnerability ID:HWPSIRT-2022-90114)

This vulnerability has been assigned a (CVE)ID:CVE-2022-48255

Affected configurations

Vulners
Node
huaweibisheng-wnmMatch3.0.0.325
CPENameOperatorVersion
bisheng-wnmeq3.0.0.325

9.8 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

0.003 Low

EPSS

Percentile

70.9%

Related for HUAWEI-SA-SCIVIAHPP-F18E962A