Metrics
Affected Vendors & Products
Source | ID | Title |
---|---|---|
![]() |
EUVD-2022-15673 | Improper Input Validation vulnerability in project file upload in Nozomi Networks Guardian and CMC allows an authenticated attacker with admin or import manager roles to execute unattended commands on the appliance using web server user privileges. This issue affects: Nozomi Networks Guardian versions prior to 22.0.0. Nozomi Networks CMC versions prior to 22.0.0. |
Solution
Upgrade to v22.0.0.
Workaround
Use internal firewall features to limit management interface access and review users allowed to import project data files.
Link | Providers |
---|---|
https://security.nozominetworks.com/NN-2022:2-02 |
![]() ![]() |
Fri, 20 Sep 2024 11:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
CPEs | cpe:2.3:a:nozominetworks:cmc:22.0.0:*:*:*:*:*:*:* cpe:2.3:a:nozominetworks:guardian:22.0.0:*:*:*:*:*:*:* |
|
Metrics |
ssvc
|
Fri, 20 Sep 2024 10:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
cvssV3_1
|
cvssV3_1
|

Status: PUBLISHED
Assigner: Nozomi
Published:
Updated: 2024-09-20T10:34:31.686Z
Reserved: 2022-02-09T00:00:00
Link: CVE-2022-0551

Updated: 2024-08-02T23:32:46.290Z

Status : Modified
Published: 2022-03-24T15:15:07.917
Modified: 2024-11-21T06:38:53.827
Link: CVE-2022-0551

No data.

No data.