Metrics
Affected Vendors & Products
| Source | ID | Title | 
|---|---|---|
|  EUVD | EUVD-2022-26446 | This vulnerability could allow an attacker to force the server to create and execute a web request granting access to backend APIs that are only accessible to the Mimosa MMP server, or request pages that could perform some actions themselves. The attacker could force the server into accessing routes on those cloud-hosting platforms, accessing secret keys, changing configurations, etc. Affecting MMP: All versions prior to v1.0.3, PTP C-series: Device versions prior to v2.8.6.1, and PTMP C-series and A5x: Device versions prior to v2.5.4.1. | 
Solution
Airspan Networks recommends users update to following products (Login Required): MMP: Version 1.0.4 or later PTP: C5x: Version 2.90 or later C5c: Version 2.90 or later PTMP: C-series: Version 2.9.0 or later A5x: Version 2.9.0 or later
Workaround
No workaround given by the vendor.
| Link | Providers | 
|---|---|
| https://www.cisa.gov/uscert/ics/advisories/icsa-22-034-02 |     | 
Wed, 16 Apr 2025 17:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | ssvc 
 | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2025-04-16T16:46:02.036Z
Reserved: 2021-12-21T00:00:00.000Z
Link: CVE-2022-21215
 Vulnrichment
                        Vulnrichment
                    Updated: 2024-08-03T02:31:59.044Z
 NVD
                        NVD
                    Status : Modified
Published: 2022-02-18T18:15:12.667
Modified: 2024-11-21T06:44:07.943
Link: CVE-2022-21215
 Redhat
                        Redhat
                    No data.
 OpenCVE Enrichment
                        OpenCVE Enrichment
                    No data.