CVE-2022-36307
6.8
Vector
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 0.9 / Impact: 5.9
Source: NVD
Description
The AirVelocity 1500 prints SNMP credentials on its physically accessible serial port during boot. This was fixed in AirVelocity 1500 software version 15.18.00.2511 and may affect other AirVelocity and AirSpeed models.
Affected (1)
Products: Airspan: Airvelocity 1500 Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| From 9.3.0.01249 to 15.18.00.2511 |
| Running on/with | Platform Versions |
|---|---|
Airspan Airvelocity 1500 | All versions |
References (4)
Source: cve-assign@fb.com
Third Party Advisory
Source: cve-assign@fb.com
Permissions RequiredVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Permissions RequiredVendor Advisory
Timeline
No history available yet.