CVE-2022-29516 Information

Description

The web console of FUJITSU Network IPCOM series (IPCOM EX2 IN(3200 3500) IPCOM EX2 LB(1100 3200 3500) IPCOM EX2 SC(1100 3200 3500) IPCOM EX2 NW(1100 3200 3500) IPCOM EX2 DC IPCOM EX2 DC IPCOM EX IN(2300 2500 2700) IPCOM EX LB(1100 1300 2300 2500 2700) IPCOM EX SC(1100 1300 2300 2500 2700) and IPCOM EX NW(1100 1300 2300 2500 2700)) allows a remote attacker to execute an arbitrary OS command via unspecified vectors.

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Reference

https://jvn.jp/en/jp/JVN96561229/index.html https://www.fujitsu.com/jp/products/network/support/2022/ipcom-01/

Attack Complexity

LOW

Privileges Required

NONE

User Interaction Required

NONE

Scope

NONE

Confidentiality Impact

UNCHANGED

Integrity Impact

HIGH

Availability Impact

HIGH

Base Score

HIGH

Base Severity

9.8

Share on: