Patlite NH-FB v1.46 and below was discovered to contain insufficient firmware validation during the upgrade firmware file upload process. This vulnerability allows authenticated attackers to create and upload their own custom-built firmware and inject malicious code. NOTE: the vendor's position is that this is a design choice, not a vulnerability
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-03T11:02:14.270Z
Reserved: 2022-08-22T00:00:00
Link: CVE-2022-38625
Updated: 2024-08-03T11:02:14.270Z
Status : Modified
Published: 2022-08-29T23:15:08.773
Modified: 2024-11-21T07:16:50.200
Link: CVE-2022-38625
No data.
OpenCVE Enrichment
No data.
Weaknesses