First published: Fri Feb 04 2022(Updated: )
The affected product is vulnerable to an authenticated OS command injection, which may allow an attacker to inject and execute arbitrary shell commands as the Admin (root) user.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Ricon Mobile S9922XL | ||
Riconmobile S9922L | ||
Ricon Mobile S9922L Firmware | =16.10.3 | |
Ricon Mobile S9922L Firmware | ||
Ricon Mobile S9922XL | =16.10.3 | |
Ricon Mobile S9922XL |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-0365 is considered a critical vulnerability due to the potential for authenticated OS command injection by an attacker.
To fix CVE-2022-0365, update the affected Ricon Mobile S9922L or S9922XL firmware to the latest version provided by the vendor.
CVE-2022-0365 affects the Ricon Mobile S9922L and S9922XL firmware versions 16.10.3.
CVE-2022-0365 can allow an attacker to execute arbitrary shell commands with root privileges on the affected devices.
Yes, CVE-2022-0365 is an authenticated vulnerability that requires an attacker to have valid credentials for exploitation.