CVE-2022-38625

** DISPUTED ** Patlite NH-FB v1.46 and below was discovered to contain insufficient firmware validation during the upgrade firmware file upload process. This vulnerability allows authenticated attackers to create and upload their own custom-built firmware and inject malicious code. NOTE: the vendor's position is that this is a design choice, not a vulnerability.
Configurations

Configuration 1


Information

Published : 2022-08-29 11:15

Updated : 2022-09-02 09:13


NVD link : CVE-2022-38625

Mitre link : CVE-2022-38625

Products Affected
No products.
CWE