Patlite NH-FB v1.46 and below was discovered to contain insufficient firmware validation during the upgrade firmware file upload process. This vulnerability allows authenticated attackers to create and upload their own custom-built firmware and inject malicious code. NOTE: the vendor's position is that this is a design choice, not a vulnerability
Subscriptions
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Fri, 27 Feb 2026 06:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-03T11:02:14.270Z
Reserved: 2022-08-22T00:00:00.000Z
Link: CVE-2022-38625
Updated: 2024-08-03T11:02:14.270Z
Status : Modified
Published: 2022-08-29T23:15:08.773
Modified: 2024-11-21T07:16:50.200
Link: CVE-2022-38625
No data.
OpenCVE Enrichment
No data.
Weaknesses