Lucene search

K
prionPRIOn knowledge basePRION:CVE-2022-38625
HistoryAug 29, 2022 - 11:15 p.m.

Privilege escalation

2022-08-2923:15:00
PRIOn knowledge base
www.prio-n.com
1
firmware validation
patlite nh-fb
privilege escalation
custom-built firmware
malicious code

8.6 High

AI Score

Confidence

High

0.003 Low

EPSS

Percentile

68.3%

DISPUTED Patlite NH-FB v1.46 and below was discovered to contain insufficient firmware validation during the upgrade firmware file upload process. This vulnerability allows authenticated attackers to create and upload their own custom-built firmware and inject malicious code. NOTE: the vendor’s position is that this is a design choice, not a vulnerability.

8.6 High

AI Score

Confidence

High

0.003 Low

EPSS

Percentile

68.3%

Related for PRION:CVE-2022-38625